← العودة للجدول
CVE-2026-82749
CVE-2026-82749 — Incorrect Authorization vulnerability in ash-project ash widens a relationship&#
📅 2026-09-01
🟠 High 🔥 No NVD Vulnerability Vulnerability

📋 الوصف الكامل

Incorrect Authorization vulnerability in ash-project ash widens a relationship's parent(...) scoping filter to match unintended records when the referenced parent field cannot be resolved. Loading a relationship whose filter references parent(...) resolves that expression against the parent record. resolve_parent_in_filter/3 (lib/ash/actions/read/relationships.ex) resolved an unresolvable pa

💻 الأنظمة المتأثرة

⚠️ نوع التهديد

Vulnerability

🔗 CVE ID

CVE-2026-82749

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-82749 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ← 🔍 Valters IT ←