Beveiligingsadvies

CVE-2026-67348

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-30 14:40:27
Laatst bijgewerkt 2026-07-31 11:54:10
Toegewezen door VulnCheck
CVSS-score 8.6
Status PUBLISHED

Beschrijving

Julep contains an insecure direct object reference vulnerability in the get_execution_details endpoint that allows authenticated tenants to read another tenant's execution data. Attackers can supply arbitrary execution_id values to retrieve sensitive execution records including task inputs, outputs, metadata, and temporal task tokens from other tenants.