Instituto Nacional de ciberseguridad. Sección Incibe
Instituto Nacional de Ciberseguridad. Sección INCIBE-CERT

CVE-2026-18635

Gravedad CVSS v3.1:
ALTA
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
11/08/2026
Última modificación:
12/08/2026

Descripción

*** Pendiente de traducción *** Velociraptor&amp;#39;s VQL has a query() plugin which allows running a VQL query in a different org or user context. To be able to run as a different user, the calling user needs to have the IMPERSONATE permission (usually only given to administrators). Velociraptor versions prior to 0.77.2 evaluate this permission against the caller&amp;#39;s org instead of against the target org.<br /> <br /> This allows an administrator in one org to impersonate another user in another org, in which they may not have the IMPERSONATE permission.

Referencias a soluciones, herramientas e información