Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-rw9x-pxqx-q789 | Statamic allows Authenticated Control Panel users to escalate privileges via elevated session bypass |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 10 Mar 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Statamic statamic
|
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:statamic:statamic:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Statamic statamic
|
Mon, 02 Mar 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 02 Mar 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Statamic
Statamic cms |
|
| Vendors & Products |
Statamic
Statamic cms |
Fri, 27 Feb 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Statmatic is a Laravel and Git powered content management system (CMS). Starting in version 6.0.0 and prior to version 6.4.0, Authenticated Control Panel users may under certain conditions obtain elevated privileges without completing the intended verification step. This can allow access to sensitive operations and, depending on the user’s existing permissions, may lead to privilege escalation. This has been fixed in 6.4.0. | |
| Title | Statamic allows Authenticated Control Panel users to escalate privileges via elevated session bypass | |
| Weaknesses | CWE-287 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-03-02T22:03:16.580Z
Reserved: 2026-02-25T03:11:36.689Z
Link: CVE-2026-27939
Updated: 2026-03-02T22:03:13.621Z
Status : Analyzed
Published: 2026-02-27T22:16:22.993
Modified: 2026-03-10T15:20:19.057
Link: CVE-2026-27939
No data.
OpenCVE Enrichment
Updated: 2026-03-02T12:04:47Z
Github GHSA