The product does not drop privileges before passing control of a resource to an actor that does not have those privileges.
Volume of CVEs assigned to CWE-271 and their average CVSS base score over time.
Top CVEs that have been assigned this CWE. A single CVE can have multiple CWE assignments, though many have just one.
12 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-44477CRITICAL CloudNativePG is a platform designed to manage PostgreSQL databases within Kubernetes environments. Prior to 1.29.1 and 1.28.3, the CloudNativePG metrics exporter opens its Postgre | May 28, 2026 | 9.9 | 40 | NO | NO |
CVE-2022-3569HIGH Due to an issue with incorrect sudo permissions, Zimbra Collaboration Suite (ZCS) suffers from a local privilege escalation issue in versions 9.0.0 and prior, where the 'zimbra' us | Oct 17, 2022 | 7.8 | 36 | NO | YES |
CVE-2026-35535HIGH In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a privilege drop before running the mailer, is not a fatal error and can lead to p | Apr 3, 2026 | 7.8 | 31 | NO | NO |
CVE-2024-0985HIGH Late privilege drop in REFRESH MATERIALIZED VIEW CONCURRENTLY in PostgreSQL allows an object creator to execute arbitrary SQL functions as the command issuer. The command intends t | Feb 8, 2024 | 8.0 | 27 | NO | NO |
CVE-2019-11243HIGH In Kubernetes v1.12.0-v1.12.4 and v1.13.0, the rest.AnonymousClientConfig() method returns a copy of the provided config, with credentials removed (bearer token, username/password, | Apr 22, 2019 | 8.1 | 26 | NO | NO |
CVE-2023-22648HIGH A Improper Privilege Management vulnerability in SUSE Rancher causes permission changes in Azure AD not to be reflected to users
while they are logged in the Rancher UI. This woul | Jun 1, 2023 | 8.8 | 25 | NO | NO |
CVE-2025-23395HIGH Screen 5.0.0 when it runs with setuid-root privileges does not drop privileges while operating on a user supplied path. This allows unprivileged users to create files in arbitrary | May 26, 2025 | 7.8 | 23 | NO | NO |
CVE-2025-53819HIGH Nix is a package manager for Linux and other Unix systems. Builds with Nix 2.30.0 on macOS were executed with elevated privileges (root), instead of the build users. The fix was ap | Jul 14, 2025 | 7.9 | 22 | NO | NO |
CVE-2026-25704MEDIUM A Privilege Dropping / Lowering Errors/Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in cosmic-greeter can allow an attacker to regain privileges that should hav | Mar 30, 2026 | 5.8 | 21 | NO | NO |
CVE-2024-35179MEDIUM Stalwart Mail Server is an open-source mail server. Prior to version 0.8.0, when using `RUN_AS_USER`, the specified user (and therefore, web interface admins) can read arbitrary fi | May 15, 2024 | 6.8 | 19 | NO | NO |
Exploit activity across CVEs assigned to this CWE, including CVEs that carry other CWE assignments.
Social posts that mention CVE IDs assigned to this CWE. This is assigned-CVE activity, not mentions of the CWE label itself.
Media articles that mention CVE IDs assigned to this CWE. This is assigned-CVE coverage, not mentions of the CWE label itself.