Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-7329

An improper privilege management vulnerability in the SQL, SPARQL, and Optic REST query interfaces of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user with a low-privileged REST role to escalate privileges to administrator. This enables execution of privileged operations and unauthorized data access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 30.3%
CVSS Severity
CVSS v3 Score 9.9
Products affected by CVE-2026-7329


Contact Us

Shodan ® - All rights reserved