GHSA-55q4-5xf4-rr34HighCVSS 8.8

Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper access control on a...

Published
September 30, 2026
Last Modified
September 30, 2026

🔗 CVE IDs covered (1)

📋 Description

Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper access control on a product-internal API which allows an attacker with local access to a node within a Pexip Infinity installation to execute arbitrary code as an unprivileged user on another Pexip Infinity node.

🔗 References (3)