CVE-2026-26720 | Twenty CRM up to 1.15.0 local.driver.ts privilege escalation (EUVD-2026-9194)
A vulnerability marked as critical has been reported in Twenty CRM up to 1.15.0. The affected element is an unknown function of the component local.driver.ts. Performing a manipulation results in privilege escalation.
This vulnerability is reported as CVE-2026-26720. The attack is possible to be carried out remotely. No exploit exists.