MediumVulnerability
CVE-2026-93861: In OpenStack Mistral through 23.0.0, the workflow membership API lets a project that has accepted a share of another…
- Source
- NVD(opens in a new tab)
- Identifier
- CVE-2026-93861
- Published
- Record updated
Summary
In OpenStack Mistral through 23.0.0, the workflow membership API lets a project that accepted a share of another project's private workflow create a further membership naming a third project. The new membership row defaults its project_id to the accepting project rather than the workflow owner, so the owner cannot see or delete it. The third project can accept it and then read and execute the owner's private workflow.
Mitigation
The source does not state a fix yet. Check the original advisory for updates.
Related items
- CriticalCVE-2026-108263: Astron Agent is an agentic workflow platform for building and running AI agents. Prior to 1.1.2, the default workflow coSimilar attack · NVD/CVE Database
- MediumHackers abuse Google Ads, Bing redirects to push Claude ClickFix attacksSimilar attack · BleepingComputer
- LowSocial Engineering AI Agents: The New BEC for 2026Similar attack · Dark Reading
- HighGHSA-cv3g-hj65-pcfh: PraisonAI: Shell command allowlist bypass via find -exec built-in actionSimilar attack · GitHub Advisory Database
- CriticalGHSA-9mp3-24cc-77mg: PraisonAI: AICoder Arbitrary File Write and Command Execution via LLM Tool CallsSimilar attack · GitHub Advisory Database