CVE-2026-88817
— UNSCOREDPublished 2026-09-16 · Updated 2026-09-18
AI analysis for this CVE has not been generated yet. Raw NVD data is shown below.
NVD description
An authenticated, non-guest user of Curiosity Workspace could enroll themselves as an administrator and member of an existing access group without an invitation or approval. It did not grant application-wide administrator privileges, and the vulnerability could not be used to obtain root access to the application or its underlying host.
Weaknesses
CWE-269, CWE-284
All references
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- HIGHCVE-2025-70962PoC
- HIGHCVE-2025-71421PoC
- HIGHCVE-2026-12470
- MEDIUMCVE-2026-12698
- CRITICALCVE-2026-13355
- MEDIUMCVE-2026-14816
- MEDIUMCVE-2026-14848
- HIGHCVE-2026-15230
Related by shared AI tags and CWE weakness class. Browse the full archive.