CVE-2026-33519

· NIST NVD ↗

An incorrect authorization vulnerability exists in Esri Portal for ArcGIS 11.4, 11.5 and 12.0 on Windows, Linux and Kubernetes that did not correctly check permissions assigned to developer credentials.

CRITICAL
CVSS severity
9.8
CVSS base score
2026-04-21
Published

CWE codes

CWE-266

Sources