🔐 CVE Alert

CVE-2026-77654

UNKNOWN 0.0

Local Privilege Escalation via Misconfigured Sudoers Entry in Horizon Security Analyzer

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Improper Privilege Management vulnerability in Horizon Security Analyzer (formerly AlgoSec Firewall Analyzer) on Linux, 64 bit allows Privilege Escalation and Parameter Injection. A local user with access to the command line may escalate their privileges by abusing the parameters of a command that is approved in the sudoers file.  This issue affects Horizon Security Analyzer : A33.10, A33.20 and A33.30.

CWE CWE-266
Vendor algosec
Product horizon security analyzer
Published Sep 8, 2026
Last Updated Sep 8, 2026
Stay Ahead of the Next One

Get instant alerts for algosec horizon security analyzer

Be the first to know when new unknown vulnerabilities affecting algosec horizon security analyzer are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

Algosec / Horizon Security Analyzer
A33.10 (up to build 300) A33.20 (up to build 170) A33.30 (up to build 110)

References

NVD ↗ CVE.org ↗ EPSS Data ↗
techdocs.algosec.com: https://techdocs.algosec.com/en/cves/Content/tech-notes/cves/cve-2026-77654.htm

Credits

Luis Vázquez Castaño - https://www.linkedin.com/in/lvazcas/ Luis Alberto Pacheco Lorenzo - https://www.linkedin.com/in/lucholapl/ Siemens Healthineers Red Team