Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-86544

HIGH NVD
CVSS Score 8.1
Severity HIGH
Published Sep 07, 2026
Vendor unknown

Description

knowns versions before 0.30.0 contain an authorization bypass vulnerability where mutating code actions are incorrectly classified as read-only operations. Attackers with read-restricted sessions can exploit code.replace to modify permission configurations and escalate privileges on subsequent calls.

References