Unrated severityNVD Advisory· Published Jun 29, 2026· Updated Jun 29, 2026
O+ Connect's lack of authentication for IPC channels led to a local privilege escalation vulnerability.
CVE-2026-22078
Description
Because O+ Connect's IPC service does not authenticate clients, external applications can escalate privileges and perform sensitive actions through the IPC channel.
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.