{
  "url": "https://www.videodioggi.com/cve-2026-09-02-en.html",
  "title": "CVE of the day — CVE-2026-82874 (CVSS 9,9, critic)",
  "language": "en",
  "published": "2026-09-02T00:21:03.073Z",
  "modified": "2026-09-02T00:21:03.073Z",
  "summary": "CVE-2026-82874: critical vulnerability, CVSS 9,9/10, type CWE-639, exploitable remotely, with low privileges, without user interaction. ToolJet before v3.16.208 fails to validate that authenticated belong users to the organization specified in the organizationId path parameter of tooljet-db..",
  "keywords": [
    "c",
    "cve-2026-82874",
    "vulnerability",
    "critical vulnerability",
    "♪",
    "cvs",
    "cybersecurity",
    "cybersecurity",
    "♪",
    "security update"
  ],
  "key_facts": [
    "CVE-2026- 874 — CVE-2026-82874: Critical gravity, CVSS score 9.9 out of 10 according to the National Vulnerability Database.",
    "CWE-639 — ToolJet before v3.16.208 fails to validate that authenticated belong users to the organization specified in the organizationId path parameter of tooljet-db endpoints, allowing any Builder user to read, modify, and..",
    "Exposure and mitigation — Remotely exploitable Vulnerability, with low privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD."
  ],
  "transcript": "CVE-2026-82874: Critical gravity, CVSS score 9.9 out of 10 according to the National Vulnerability Database. ToolJet before v3.16.208 fails to validate that authenticated belong users to the organization specified in the organizationId path parameter of tooljet-db endpoints, allowing any Builder user to read, modify, and.. Remotely exploitable Vulnerability, with low privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD.",
  "video": {
    "mp4": "https://www.videodioggi.com/videos/cve-2026-09-02-en.mp4",
    "poster": "https://www.videodioggi.com/videos/cve-2026-09-02-en.jpg",
    "duration_seconds": 20
  },
  "source": "www.videodioggi.com",
  "generator": "videodioggi procedural video engine"
}