CVE-2026-12263: Authentication Bypass Vulnerability in EventLog Analyzer and Log360
| Vulnerability details |
| Severity |
High |
| CVE ID |
CVE-2026-12263 |
| Affected software versions |
Builds from 13001 to 13070 |
| Fixed version |
Build 13071 |
| Fixed on |
August 25, 2026 |
Details
CVE-2026-12263 is an Authentication Bypass vulnerability in EventLog Analyzer and Log360. The vulnerability has been addressed, and the issue does not exist in the fixed version.
Impact
This vulnerability allows any authenticated user to log in to EventLog Analyzer or Log360 as any other user, resulting in unauthorized access.
Steps to update
Update your Log360 or EventLog Analyzer installation to build 13071 or later using the following links
Acknowledgements
This issue was identified by 0xManhNV through the Zoho Bug Bounty Program.
Please contact our product support or our security team if you need further assistance.