Authorization Bypass in KnownS Product by KnownS Dev
CVE-2026-86544
7.2HIGH
What is CVE-2026-86544?
The vulnerability in KnownS allows attackers with limited read access to exploit the misclassification of mutating code actions as read-only. This flaw enables unauthorized modifications to permission configurations, facilitating potential privilege escalation during subsequent operations. It affects known versions prior to 0.30.0, highlighting the importance of updating to mitigate associated risks.
Affected Version(s)
knowns 0 < 0.30.0
knowns 0.30.0
