Skip to main content

CVE-2026-77520: CWE-862: Missing Authorization in 1Panel-dev MaxKB

0
Medium
VulnerabilityCVE-2026-77520cvecve-2026-77520cwe-862
Published: 09/21/2026 (09/21/2026, 20:28:08 UTC)
Source: CVE Database V5
Vendor/Project: 1Panel-dev
Product: MaxKB

Description

CVE-2026-77520 is a missing authorization vulnerability in MaxKB versions 2.10.2-lts and earlier. It allows a normal user within the same workspace to obtain another user's application_id via a question-ranking endpoint if the victim's application has ranking activity and the attacker knows or guesses its name. This identifier can then be misused by creating a workflow application node that references the victim's application, enabling the attacker to trigger workflows that generate output under the victim's application context and create persistent chat records without proper permission checks. No fix is currently available.

CVSS v3.1

Score 5.4medium

Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
Low
Availability
None
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

Affected software

1Panel-dev

MaxKB

Affected versions
<=2.10.2-lts
GitHub Actionsmore threats →ai
1panel-dev/MaxKB
pkg:github/1panel-dev/MaxKB
Affected versions
<=2.10.2-lts

Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 09/21/2026, 22:14:42 UTC

Technical Analysis

MaxKB, an open-source AI assistant for enterprise, suffers from a missing authorization vulnerability (CWE-862) in versions 2.10.2-lts and earlier. A normal user can retrieve another user's application_id from the homepage application question-ranking endpoint when the victim's application has ranking activity in the selected date range and the attacker knows or guesses the application name. Although direct application detail and debug-open routes deny access, the disclosed identifier can be embedded in an attacker-owned workflow application node. Triggering this workflow causes output generation by the victim application and creates durable application_chat and application_chat_record entries under the victim's application. This occurs because save and runtime paths do not verify permissions to use the referenced application. No patched version is available as of the review date.

Potential Impact

An attacker with normal user privileges in the same workspace can access another user's application_id and leverage it to execute workflows that generate outputs and create persistent chat records under the victim's application. This unauthorized use of the victim's application context can lead to information disclosure and potential misuse of application resources. The vulnerability has a CVSS 3.1 score of 5.4 (medium severity), indicating limited confidentiality and integrity impact without availability impact.

Mitigation Recommendations

No official fix or patch is currently available for this vulnerability. Users should monitor vendor advisories for updates. Until a fix is released, restrict user permissions to limit the ability to create and publish workflow applications, and consider isolating sensitive applications or workspaces to reduce exposure. Patch status is not yet confirmed — check the vendor advisory for current remediation guidance.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Data Version
5.2
Assigner Short Name
GitHub_M
Date Reserved
2026-08-20T20:23:02.507Z
Cvss Version
3.1
State
PUBLISHED

Threat ID: 6ab1abbd55bf5e2cf58b4689

Added to database: 09/21/2026, 22:12:13 UTC

Last enriched: 09/21/2026, 22:14:42 UTC

Last updated: 09/22/2026, 01:32:57 UTC

Views: 6

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Actions

PRO

Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.

Please log in to the Console to use AI analysis features.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses