CVE-2024-57726CISA KEV: Actively Exploited

SimpleHelp Missing Authorization Vulnerability

Published Apr 24, 2026·Updated Apr 24, 2026

Description

SimpleHelp contains a missing authorization vulnerability that could allow low-privileged technicians to create API keys with excessive permissions. These API keys can be used to escalate privileges to the server admin role.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free