PT-2026-80864 · Unknown · Ransomlook

·

CVE-2026-78370

·

Published

2026-08-24

·

Updated

2026-08-24

CVSS v4.0

9.2

Critical

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions RansomLook (affected versions not specified)
Description An authorization flaw exists in the legacy database export functionality that allows unauthenticated remote users to retrieve private information. The /export/<database> endpoint allows the export of selected internal databases without authentication. Because the application does not consistently apply private-entity access restrictions to all exportable databases, records associated with groups, markets, and posts marked as private may be disclosed. This could lead to the exposure of private ransomware intelligence, victim information, and internal tracking data.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability. As a temporary workaround, restrict access to the /export/<database> endpoint to minimize the risk of exploitation.

Exploit

Missing Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-78370

Affected Products

Ransomlook