Authorization Flaw in RunZero Platform Affects MCP Agents
CVE-2026-5379
3LOW
What is CVE-2026-5379?
An authorization flaw has been identified in the RunZero Platform affecting MCP agents, allowing them to access certificate information beyond their authorized organizational scope. This issue reflects CWE-863, which relates to improper authorization checks. The vulnerability was effectively addressed in version 4.0.260203.0, enhancing the platform's security posture.
Affected Version(s)
Platform 0 < 4.0.260203.0
