Beveiligingsadvies

CVE-2026-85213

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-09-03 14:12:23
Laatst bijgewerkt 2026-09-03 14:23:00
Toegewezen door VulnCheck
CVSS-score 7.6
Status PUBLISHED

Beschrijving

Kill Bill through 0.24.21 fails to enforce permission annotations on several AdminResource endpoints including getQueueEntries, invalidatesCache, and putOutOfRotation. Authenticated users with minimal account:read permissions can read internal queues, flush server caches, and disable the server by putting the host out of rotation.