A vulnerability in the web application allows unauthorized users to access and manipulate sensitive data across different tenants by exploiting insecure direct object references. This could lead to unauthorized access to sensitive information and unauthorized changes to the tenant's configuration.
References
| Link | Resource |
|---|---|
| https://github.com/Penguinsecq/CVE-2026-6355/ | Third Party Advisory |
Configurations
History
12 May 2026, 20:17
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/Penguinsecq/CVE-2026-6355/ - Third Party Advisory | |
| CWE | CWE-639 | |
| First Time |
Augmentt
Augmentt augmentt |
|
| CPE | cpe:2.3:a:augmentt:augmentt:*:*:*:*:*:*:*:* |
22 Apr 2026, 15:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
22 Apr 2026, 14:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-22 14:17
Updated : 2026-05-12 20:17
NVD link : CVE-2026-6355
Mitre link : CVE-2026-6355
CVE.ORG link : CVE-2026-6355
JSON object : View
Products Affected
augmentt
- augmentt
CWE
CWE-639
Authorization Bypass Through User-Controlled Key
