CVE-2026-95814 | dani-garcia Vaultwarden up to 1.37.3 Membership Status Validation access control
A vulnerability classified as critical has been found in dani-garcia Vaultwarden up to 1.37.3. This affects the function get_user_collections_access_flags/get_group_collections_access_flags/is_in_full_access_group of the component Membership Status Validation. Performing a manipulation results in improper access controls.
This vulnerability is cataloged as CVE-2026-95814. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More