CVE-2026-105049
MEDIUM
NVD
CVSS Score
5.8
Severity
MEDIUM
Published
Oct 02, 2026
Vendor
unknown
Description
Zilliz Attu before 3.0.0 has a Playground feature that does not require authentication for proxying arbitrary HTTP and HTTPS requests to URLs on the public internet.