{"data":{"id":"9c005d93-f21b-4b6e-b30c-118b2cfe767d","title":"CVE-2026-84779: Subscriber Broken Access Control in Agentimus – AI SEO, llms.txt &amp; MCP for AI Agents <= 1.51.0 versions.","summary":"Agentimus, a plugin that integrates AI and SEO tools with AI agents, has a broken access control vulnerability (a security flaw where users can access data or features they shouldn't be able to) in version 1.51.0 and earlier. This flaw specifically affects the subscriber functionality, meaning attackers could potentially access subscriber-level features or data without proper authorization.","solution":"N/A -- no mitigation discussed in source.","labels":["security"],"sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-84779","publishedAt":"2026-09-03T17:17:28.880Z","cveId":"CVE-2026-84779","cweIds":["CWE-862"],"cvssScore":"8.1","cvssSeverity":"high","severity":"high","attackType":["other"],"issueType":"vulnerability","affectedPackages":null,"affectedVendors":[],"affectedVendorsRaw":["Agentimus"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","attackVector":"network","attackComplexity":"low","privilegesRequired":"low","userInteraction":"none","exploitMaturity":"unknown","epssScore":0,"patchAvailable":null,"disclosureDate":"2026-09-03T17:17:28.880Z","capecIds":["CAPEC-122"],"crossRefCount":0,"attackSophistication":"trivial","impactType":["confidentiality","integrity"],"aiComponentTargeted":"agent","llmSpecific":false,"classifierConfidence":0.85,"researchCategory":null,"atlasIds":null}}