← العودة للجدول
CVE-2026-82738
CVE-2026-82738 — Improper Input Validation vulnerability in ash-project ash allows an attacker to
📅 2026-09-01
🟡 Medium 🔥 No NVD Vulnerability Vulnerability

📋 الوصف الكامل

Improper Input Validation vulnerability in ash-project ash allows an attacker to persistently deny reads of a record by storing a non-version-7 UUID in an Ash.Type.UUIDv7 attribute. Ash.Type.UUIDv7.cast_input/2 accepts any well-formed UUID string, including non-version-7 UUIDs, and stores it as a 16-byte binary. On read, cast_stored/2 (lib/ash/type/uuid_v7.ex) routes the stored binary back throug

💻 الأنظمة المتأثرة

⚠️ نوع التهديد

Vulnerability

🔗 CVE ID

CVE-2026-82738

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-82738 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ← 🔍 Valters IT ←