PatchSiren

Iru, Inc CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

Review Iru, Inc CVE published 2026-06-15

CVE-2026-39118

CVE-2026-39118 is a privilege escalation vulnerability in Iru, Inc Kandji Agent before v.4.7.5(5374). A local attacker can exploit this issue via a client validation gap to invoke restricted agent functionality. The CVE was published on 2026-06-15T20:16:27.447Z and has not been modified since then.