{ "id": "CVE-2024-31498", "sourceIdentifier": "cve@mitre.org", "published": "2024-04-04T23:15:16.743", "lastModified": "2024-04-04T23:15:16.743", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "ykman-gui (aka YubiKey Manager GUI) before 1.2.6 on Windows, when Edge is not used, allows privilege escalation because browser windows can open as Administrator." } ], "metrics": {}, "references": [ { "url": "https://www.yubico.com/support/security-advisories/ysa-2024-01/", "source": "cve@mitre.org" } ] }