{"data":{"id":"eddb746b-409d-4e72-a197-22bd67bd0fd3","title":"CVE-2026-84462: Zammad is a web based open source helpdesk/customer support system. Prior to 7.1.2, a security filter that protects Zamm","summary":"Zammad, a web-based customer support system, has a vulnerability in versions before 7.1.2 where a security filter protecting AI Agent configuration can be bypassed using specially crafted text. An administrator could exploit this to run arbitrary commands (code that executes whatever the attacker wants) on the server, potentially compromising all stored data.","solution":"Update Zammad to version 7.1.2 or later, which fixes this issue.","labels":["security"],"sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-84462","publishedAt":"2026-09-25T18:17:30.797Z","cveId":"CVE-2026-84462","cweIds":["CWE-20","CWE-94","CWE-1336"],"cvssScore":null,"cvssSeverity":null,"severity":"critical","attackType":[],"issueType":"vulnerability","affectedPackages":null,"affectedVendors":[],"affectedVendorsRaw":["Zammad"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":"unknown","epssScore":0,"patchAvailable":null,"disclosureDate":"2026-09-25T18:17:30.797Z","capecIds":["CAPEC-242"],"crossRefCount":0,"attackSophistication":"moderate","impactType":["integrity","confidentiality","availability"],"aiComponentTargeted":"agent","llmSpecific":false,"classifierConfidence":0.92,"researchCategory":null,"atlasIds":null}}