{
  "title": "CVE of the day — CVE-2026-82874 (CVSS 9,9, critic)",
  "title_variants": [
    {
      "id": "v0",
      "title": "CVE of the day — CVE-2026-82874 (CVSS 9,9, critic)"
    },
    {
      "id": "v1",
      "title": "CVE-2026-82874: critical vulnerability, CVSS 9,9/10, type CWE-639, exploitable remotely,"
    }
  ],
  "description": "CVE-2026-82874: critical vulnerability, CVSS 9,9/10, type CWE-639, exploitable remotely, with low privileges, without user interaction. ToolJet before v3.16.208 fails to validate that authenticated belong users to the organization specified in the organizationId path parameter of tooljet-db..",
  "keywords": [
    "c",
    "cve-2026-82874",
    "vulnerability",
    "critical vulnerability",
    "♪",
    "cvs",
    "cybersecurity",
    "cybersecurity",
    "♪",
    "security update"
  ],
  "scenes": [
    {
      "title": "CVE-2026- 874",
      "subtitle": "CVSS 9,9",
      "text": "CVE-2026-82874: Critical gravity, CVSS score 9.9 out of 10 according to the National Vulnerability Database."
    },
    {
      "title": "CWE-639",
      "subtitle": "CWE-639 · CVSS v3.1",
      "text": "ToolJet before v3.16.208 fails to validate that authenticated belong users to the organization specified in the organizationId path parameter of tooljet-db endpoints, allowing any Builder user to read, modify, and.."
    },
    {
      "title": "EXPOSURE AND MITIGATION",
      "subtitle": "remotely exploitable, with low privileges, without user interaction",
      "text": "Remotely exploitable Vulnerability, with low privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD."
    }
  ],
  "publication_date": "2026-09-02T00:21:03.003Z",
  "duration": 20,
  "topic": "cve",
  "lang": "en",
  "translation_group": "cve-2026-09-02",
  "poster": "cve-2026-09-02-en.jpg",
  "preview": "cve-2026-09-02-en.gif",
  "og_card": "cve-2026-09-02-en.og.jpg",
  "audiogram": "cve-2026-09-02-en.audiogram.mp4",
  "captions": "cve-2026-09-02-en.vtt",
  "generation": {
    "procedural": true,
    "ai_generated": [
      "background",
      "voice"
    ],
    "real_data_source": "official public API",
    "filmed_real_event": false,
    "disclosure": "Procedurally generated from real public-source data; abstract AI-generated backgrounds; synthetic (TTS) voice. No real event is filmed or altered."
  },
  "transcript_text": "CVE-2026-82874: Critical gravity, CVSS score 9.9 out of 10 according to the National Vulnerability Database. ToolJet before v3.16.208 fails to validate that authenticated belong users to the organization specified in the organizationId path parameter of tooljet-db endpoints, allowing any Builder user to read, modify, and.. Remotely exploitable Vulnerability, with low privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD.",
  "transcript": [
    {
      "start": 0,
      "end": 6.667,
      "text": "CVE-2026-82874: Critical gravity, CVSS score 9.9 out of 10 according to the National Vulnerability Database."
    },
    {
      "start": 6.667,
      "end": 13.333,
      "text": "ToolJet before v3.16.208 fails to validate that authenticated belong users to the organization specified in the organizationId path parameter of tooljet-db endpoints, allowing any Builder user to read, modify, and.."
    },
    {
      "start": 13.333,
      "end": 20,
      "text": "Remotely exploitable Vulnerability, with low privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD."
    }
  ]
}