# CVE-2026-22888

## Summary

- **CVE ID:** CVE-2026-22888
- **Severity:** MEDIUM
- **CVSS Score:** 6.9 (CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N)
- **CWE:** CWE-231
- **Published:** Feb 2, 2026
- **Last Modified:** Mar 12, 2026

## Description

Improper input verification issue exists in Cybozu Garoon 5.0.0 to 6.0.3, which may lead to unauthorized alteration of portal settings, potentially blocking access to the product.

## Affected Products

- Cybozu, Inc. — Cybozu Garoon (5.0.0 to 6.0.3)

## References

- [CNA](https://kb.cybozu.support/article/39083/)
- [CNA](https://jvn.jp/en/jp/JVN35265756/)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.42%
- **EPSS Percentile:** 35.4

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._