CVE-2026-56320 | Capgo up to 12.128.1 /private/create_device org_id improper authorization (GHSA-mhrc-qhq8-872f)
A vulnerability identified as critical has been detected in Capgo up to 12.128.1. The affected element is an unknown function of the file /private/create_device. Performing a manipulation of the argument org_id results in improper authorization.
This vulnerability is reported as CVE-2026-56320. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.VulDB Recent EntriesRead More