CVE-2026-82280
HIGH
NVD
CVSS Score
7.1
Severity
HIGH
Published
Aug 28, 2026
Vendor
unknown
Description
Quivr through 0.0.322 fails to validate ownership in prompt endpoints, allowing authenticated users to modify any prompt by identifier. Attackers with read-only access to shared brains can read exposed prompt identifiers and overwrite system prompts affecting all brain users.