What is CVE-2026-75839?
ArcadeDB versions up to 26.7.3 contain an IDOR vulnerability in the Raft cluster-info endpoints, allowing authenticated but unauthorized access. This only affects HA cluster deployments, so users should immediately upgrade to the latest version.
Azərbaycanca: ArcadeDB-nin 26.7.3-ə qədər versiyalarında Raft klaster məlumat endpointlərində autentifikasiyalı, lakin səlahiyyətsiz girişə imkan verən IDOR zəifliyi aşkarlanıb. Bu, yalnız HA klaster mühitində istismar edilə bilər, ona görə də istifadəçilər dərhal son versiyaya yeniləməlidir.
Related CVEs
link basis: same weakness class CWE-862
FAQ2
Which ArcadeDB environments are affected by CVE-2026-75839?
This vulnerability can only be exploited in HA cluster deployments.
What should I do to protect against CVE-2026-75839?
Users should immediately upgrade to the latest version of ArcadeDB.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.