S4E just found a high top 10 tcp port service scan
high·Product Based Web Vulnerabilities·Updated Jul 23, 2026

CVE-2026-22683 Scanner

CVE-2026-22683 Scanner - Authorization Bypass vulnerability in Windmill

Est. Time~10 seconds
Scan TypeGroup Scan
Targetsdomain, subdomain, ipv4
CostFree
0
Times Used
by S4E users
0
Assets Scanned
domains & IPs
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2026-22683
8.7
CVSShigh
Exploitable remotely over the internet · low-privilege account sufficient.

Windmill versions 1.56.0 through 1.614.0 contain a missing authorization vulnerability that allows users with the Operator role to perform prohibited entity creation and modification actions via the backend API. Although Operators are documented and priced as unable to create or modify entities, the API does not enforce the Operator restriction on workspace endpoints, allowing an Operator to create and update scripts, flows, apps, and raw_apps. Since Operators can also execute scripts via the jobs API, this allows direct privilege escalation to remote code execution within the Windmill deployment. This vulnerability has existed since the introduction of the Operator role in version 1.56.0.

Attack Vector
Network
Privileges Req.
Low
User Interaction
None
Affected
Windmill CE (Community Edition)by Windmill Labs
1.56.0
Windmill EE (Enterprise Edition)by Windmill Labs
1.56.0
Updated Aug 19, 2026View on NVD →
Detail

Windmill is a software solution primarily used by operators to execute predefined scripts in controlled environments. Various companies, ranging from small startups to large enterprises, might utilize Windmill to automate repetitive tasks, manage workflows, and streamline operations. With Windmill, users can manage folders and permissions for process organization within their operations dashboard. However, its existing versions prior to 1.603.3 are vulnerable to certain security threats. Developers continuously strive to iterate and secure Windmill, making it a reliable choice for operational automation. Proper management of user roles and permissions is critical in environments leveraging Windmill for workflow simplification.

The authorization bypass vulnerability detected in Windmill poses a significant security risk. The issue arises due to inadequate enforcement of role-based access control checks on folder management API endpoints. Despite operators being intended as restricted users, the absence of authorization checks permits unauthorized actions. This flaw allows operator-level credentials to be misused to gain unintended access to folder management functionalities. This vulnerability can be exploited to perform unauthorized folder creation, permission management, and access to critical endpoints. Securing these role-based access controls is vital to prevent unintended privilege escalation.

Technically, the vulnerability exists because the folder management API endpoints fail to enforce role-based restrictions. Specifically, endpoints related to folder creation, deletion, and permission management are improperly secured. An attacker with operator-level credentials can exploit this gap to manipulate folder permissions and access paths normally restricted to higher-level users. The vulnerable parameters and endpoints circumstantially facilitate unauthorized folder operations. The security flaw makes the software susceptible to abuse if unchecked. This vulnerability underlines the importance of rigorous access control implementations in software applications.

If exploited, this authorization bypass can have severe consequences on the system's operational integrity. Attackers could gain unauthorized control over folder management, potentially compromising the confidentiality and integrity of organizational data stored within Windmill. Additionally, in conjunction with SQL injection vulnerabilities, this flaw could escalate privileges to a super admin level, culminating in arbitrary code execution. Such an escalation represents a significant security breach, potentially exposing sensitive data and operations to malicious entities. Addressing this vulnerability is crucial to safeguard system security and maintain operational trustworthiness.

REFERENCES

Solution Advice
Remediation:
  • Upgrade Windmill to version 1.603.3 or later to ensure proper enforcement of role restrictions.
  • Implement additional role-based access control checks on endpoints relating to folder management.
  • Regularly audit user roles and permissions to ensure compliance with security policies.
  • Conduct periodic security assessments to identify and mitigate potential vulnerabilities.
  • Educate users about the importance of using distinct credentials and monitoring unauthorized activities.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.