CVE-2026-13068
Severity CVSS v4.0:
LOW
Type:
Unavailable / Other
Publication date:
22/07/2026
Last modified:
23/07/2026
Description
An authenticated user holding cursor termination privileges on one database may incorrectly be permitted to terminate active cursors on a separate database, disrupting ongoing query operations for other users. The behavior stems from an authorization check that does not correctly scope privileges to the appropriate namespace.
Impact
Base Score 4.0
2.30
Severity 4.0
LOW
Base Score 3.x
4.20
Severity 3.x
MEDIUM



