HIGH
goodrain
CVE published 2026-08-13
CVE-2026-72741
CVE-2026-72741 is a high-severity vulnerability in Rainbond, a platform that allows authenticated attackers to access unauthorized enterprise resources. The vulnerability is caused by a broken access control in the CheckToken function, which enables attackers to bypass enterprise ID verification and access or modify another enterprise's services, plugins, environment variables, and certificates.