capgo.app
Cap-go- Product type
- Other
- Catalog vulnerabilities
- 5
Severity across 1 analyzed records
Verify to analyze this security profile
en
As of 09/15/2026, within CyStack's analyzed data, capgo.app has 1 security vulnerability published in the last 90 days. Of these, 1 is rated High or Critical. None of these vulnerabilities is listed in the CISA KEV catalog. CyStack recommends that organizations and individual users remediate applicable vulnerabilities as soon as possible.
CyStack does not yet have sufficient official-source data to identify the latest version of capgo.app and determine which vulnerabilities affect that version.
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.
Explore CyStack VulnScan| Vulnerability | Exploitation status | Fix | Published | Severity |
|---|---|---|---|---|
CVE-2026-88864Capgo SSO Provider Authentication Bypass via PostgREST Direct Write | Exploitation statusPublic exploit | FixYes | Published09/10/2026 | SeverityCritical |
CVE-2026-88863capgo.app through 12.207.1 Privilege Escalation via invite_new_user_to_org | Exploitation statusNot known exploited | FixYes | Published09/10/2026 | SeverityHigh |
CVE-2026-88862Capgo API Key Manager Authentication Bypass via x-limited-key-id | Exploitation statusPublic exploit | FixNot confirmed | Published09/10/2026 | SeverityHigh |
CVE-2026-88861Capgo AAL1 Session MFA Bypass via Direct RBAC Authorization | Exploitation statusNot confirmed | FixNot confirmed | Published09/10/2026 | SeverityHigh |
CVE-2026-88860Capgo Authorization Bypass via Stale Channel Permission Overrides | Exploitation statusNot confirmed | FixNot confirmed | Published09/10/2026 | SeverityCritical |