Insufficient Hostname Verification in Joyland AI App
CVE-2026-102669

6.9MEDIUM

Key Information:

Vendor

Joyland

Vendor
CVE Published:
1 October 2026

What is CVE-2026-102669?

The Joyland AI app has a vulnerability due to inadequate verification of hostnames. This flaw could permit a malicious actor to establish a connection with the app, enabling them to intercept and potentially manipulate chat messages. Users of the app should be aware of this issue to take appropriate measures to secure their communications and data.

Affected Version(s)

Joyland.ai *

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Vincent C., CodeVispera
.