CVE-2026-27802
Vaultwarden is an unofficial Bitwarden compatible server written in Rust, formerly known as bitwarden_rs. Prior to version 1.35.4, there is a privilege escalation vulnerability via bulk permission update to unauthorized collections by Manager. This issue has been patched in version 1.35.4.
Vendor
Product
CWE
Yayın Tarihi
2026-03-04 22:16:18
Güncelleme
2026-03-06 19:45:31
Source Identifier
security-advisories@github.com
KEV Date Added
-