CVE-2026-77827: Maono Link

High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Maono Link 3.8.13 MaonoAiServices Windows service allows local privilege escalation for a standard user account via improper write privileges in 'C:\ProgramData\Maono'. Fixed in 4.0.80.

Affected products

  • Maono Maono Link: from 3.8.13, before 4.0.80 (fixed in 4.0.80)

Published 2026-09-08. Last modified 2026-09-14.