Beveiligingsadvies

CVE-2026-57476

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-10 17:10:50
Laatst bijgewerkt 2026-08-03 18:20:12
Toegewezen door cisa-cg
CVSS-score 6.3
Status PUBLISHED

Beschrijving

Deloitte AI Assist for Customer exposed unauthenticated API endpoints that allowed an attacker with knowledge of additional parameters to read from or inject content into the retrieval-augmented generation (RAG) corpus. On 2026-03-25, AI Assist for Customer restricted network access and enforced authentication for the previously exposed endpoints.