CVE-2026-82280 UNKNOWN

CVE-2026-82280

Published: 2026-08-28

Description

Quivr through 0.0.322 fails to validate ownership in prompt endpoints, allowing authenticated users to modify any prompt by identifier. Attackers with read-only access to shared brains can read exposed prompt identifiers and overwrite system prompts affecting all brain users.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…