Security Advisory

CVE-2026-88817

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-09-16 12:10:36
Last updated 2026-09-16 13:13:51
Assigner airbus
CVSS score 8.7
State PUBLISHED

Description

An authenticated, non-guest user of Curiosity Workspace could enroll themselves as an administrator and member of an existing access group without an invitation or approval. It did not grant application-wide administrator privileges, and the vulnerability could not be used to obtain root access to the application or its underlying host.