CVE-2026-77520: CWE-862: Missing Authorization in 1Panel-dev MaxKB
CVE-2026-77520 is a missing authorization vulnerability in MaxKB versions 2.10.2-lts and earlier. It allows a normal user within the same workspace to obtain another user's application_id via a question-ranking endpoint if the victim's application has ranking activity and the attacker knows or guesses its name. This identifier can then be misused by creating a workflow application node that references the victim's application, enabling the attacker to trigger workflows that generate output under the victim's application context and create persistent chat records without proper permission checks. No fix is currently available.
AI Analysis
Technical Summary
MaxKB, an open-source AI assistant for enterprise, suffers from a missing authorization vulnerability (CWE-862) in versions 2.10.2-lts and earlier. A normal user can retrieve another user's application_id from the homepage application question-ranking endpoint when the victim's application has ranking activity in the selected date range and the attacker knows or guesses the application name. Although direct application detail and debug-open routes deny access, the disclosed identifier can be embedded in an attacker-owned workflow application node. Triggering this workflow causes output generation by the victim application and creates durable application_chat and application_chat_record entries under the victim's application. This occurs because save and runtime paths do not verify permissions to use the referenced application. No patched version is available as of the review date.
Potential Impact
An attacker with normal user privileges in the same workspace can access another user's application_id and leverage it to execute workflows that generate outputs and create persistent chat records under the victim's application. This unauthorized use of the victim's application context can lead to information disclosure and potential misuse of application resources. The vulnerability has a CVSS 3.1 score of 5.4 (medium severity), indicating limited confidentiality and integrity impact without availability impact.
Mitigation Recommendations
No official fix or patch is currently available for this vulnerability. Users should monitor vendor advisories for updates. Until a fix is released, restrict user permissions to limit the ability to create and publish workflow applications, and consider isolating sensitive applications or workspaces to reduce exposure. Patch status is not yet confirmed — check the vendor advisory for current remediation guidance.
CVE-2026-77520: CWE-862: Missing Authorization in 1Panel-dev MaxKB
Description
CVE-2026-77520 is a missing authorization vulnerability in MaxKB versions 2.10.2-lts and earlier. It allows a normal user within the same workspace to obtain another user's application_id via a question-ranking endpoint if the victim's application has ranking activity and the attacker knows or guesses its name. This identifier can then be misused by creating a workflow application node that references the victim's application, enabling the attacker to trigger workflows that generate output under the victim's application context and create persistent chat records without proper permission checks. No fix is currently available.
CVSS v3.1
Score 5.4medium
Affected software
1Panel-dev
MaxKB
pkg:github/1panel-dev/MaxKBRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
MaxKB, an open-source AI assistant for enterprise, suffers from a missing authorization vulnerability (CWE-862) in versions 2.10.2-lts and earlier. A normal user can retrieve another user's application_id from the homepage application question-ranking endpoint when the victim's application has ranking activity in the selected date range and the attacker knows or guesses the application name. Although direct application detail and debug-open routes deny access, the disclosed identifier can be embedded in an attacker-owned workflow application node. Triggering this workflow causes output generation by the victim application and creates durable application_chat and application_chat_record entries under the victim's application. This occurs because save and runtime paths do not verify permissions to use the referenced application. No patched version is available as of the review date.
Potential Impact
An attacker with normal user privileges in the same workspace can access another user's application_id and leverage it to execute workflows that generate outputs and create persistent chat records under the victim's application. This unauthorized use of the victim's application context can lead to information disclosure and potential misuse of application resources. The vulnerability has a CVSS 3.1 score of 5.4 (medium severity), indicating limited confidentiality and integrity impact without availability impact.
Mitigation Recommendations
No official fix or patch is currently available for this vulnerability. Users should monitor vendor advisories for updates. Until a fix is released, restrict user permissions to limit the ability to create and publish workflow applications, and consider isolating sensitive applications or workspaces to reduce exposure. Patch status is not yet confirmed — check the vendor advisory for current remediation guidance.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- GitHub_M
- Date Reserved
- 2026-08-20T20:23:02.507Z
- Cvss Version
- 3.1
- State
- PUBLISHED
Threat ID: 6ab1abbd55bf5e2cf58b4689
Added to database: 09/21/2026, 22:12:13 UTC
Last enriched: 09/21/2026, 22:14:42 UTC
Last updated: 09/22/2026, 01:32:57 UTC
Views: 6
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.