CVE-2026-61672 | projectcapsule Capsule up to 0.13.6 Forbidden List forbidden_list.go ForbiddenListSpec.ExactMatch access control
A vulnerability was found in projectcapsule Capsule up to 0.13.6 and classified as critical. Affected by this issue is the function ForbiddenListSpec.ExactMatch of the file pkg/api/forbidden_list.go of the component Forbidden List. The manipulation results in improper access controls.
This vulnerability was named CVE-2026-61672. The attack may be performed from remote. There is no available exploit.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More