CVE-2026-68490
Incorrect permission assignment allows local users to obtain sensitive CalDAV/CardDAV information belonging to other accounts.
- Published Sep 23, 2026
- CVSS 8.2 high
- 0.1% chance of exploitation in the next 30 days (EPSS)
Incorrect permission assignment allows local users to obtain sensitive CalDAV/CardDAV information belonging to other accounts.