CVE-2026-39118
Severity CVSS v4.0:
Pending analysis
Type:
CWE-269
Improper Privilege Management
Publication date:
15/06/2026
Last modified:
16/06/2026
Description
An issue in Iru, Inc Kandji Agent before v.4.7.5(5374) allows a local attacker to escalate privileges via a client validation gap to invoke restricted agent functionality.
Impact
Base Score 3.x
8.40
Severity 3.x
HIGH



