A vulnerability was found in Rapid7 Insight Agent up to 3.3.0 on Windows. It has been classified as problematic. Affected is an unknown function of the file …/bootstrap/common/ssl of the component Certificate Handler. The manipulation leads to incorrect permission assignment.

This vulnerability is referenced as CVE-2026-4482. The attack can only be performed from a local environment. No exploit is available.

Upgrading the affected component is recommended.