VYPR
Unrated severityNVD Advisory· Published Jun 29, 2026· Updated Jun 29, 2026

O+ Connect's lack of authentication for IPC channels led to a local privilege escalation vulnerability.

CVE-2026-22078

Description

Because O+ Connect's IPC service does not authenticate clients, external applications can escalate privileges and perform sensitive actions through the IPC channel.

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.