CVE-2026-88817
— UNSCOREDPublished 2026-09-16 · Updated 2026-09-18
AI analysis for this CVE has not been generated yet. Raw NVD data is shown below.
NVD description
An authenticated, non-guest user of Curiosity Workspace could enroll themselves as an administrator and member of an existing access group without an invitation or approval. It did not grant application-wide administrator privileges, and the vulnerability could not be used to obtain root access to the application or its underlying host.
Weaknesses
CWE-269, CWE-284
All references
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- HIGHCVE-2025-70962PoC
- HIGHCVE-2025-71421PoC
- HIGHCVE-2026-100578PoC
- HIGHCVE-2026-100586PoC
- MEDIUMCVE-2026-100611PoC
- HIGHCVE-2026-100615PoC
- LOWCVE-2026-100620PoC
- MEDIUMCVE-2026-100621PoC
Related by shared AI tags and CWE weakness class. Browse the full archive.