PT-2026-7114 · Cyberark+1 · Cyberark Conjur+1

Modhanami

·

Published

2026-02-09

·

Updated

2026-03-15

·

CVE-2026-1732

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions BeyondTrust (affected versions not specified) CyberArk Conjur versions prior to 15.2.0
Description A critical flaw exists that allows for pre-authentication remote code execution. The issue affects enterprise vaults and allows privilege escalation in secrets management.
Recommendations Update CyberArk Conjur to version 15.2.0. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

LPE

RCE

Weakness Enumeration

Related Identifiers

BIT-GITLAB-2026-1732
CVE-2026-1732

Affected Products

Beyondtrust
Cyberark Conjur