{"id":"CVE-2026-77523","title":"MaxKB is an open-source AI assistant for enterprise","summary":"MaxKB is an open-source AI assistant for enterprise. In version 2.10.3-lts and earlier, the model parameter form route authorizes the path workspace but ModelSerializer.ModelParams loads and saves a Model by id alone without including wo…","severity":"high","cvss":7.4,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L","cwe":["CWE-639"],"vendor":"1Panel-dev","product":"MaxKB","affected":["MaxKB <= 2.10.3-lts"],"published":"2026-09-21","updated":"2026-09-22","sourceUpdated":"2026-09-22T14:17:15.673","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-77523","references":[{"url":"https://github.com/1Panel-dev/MaxKB/security/advisories/GHSA-g888-8cvh-9284","label":"security-advisories@github.com"}],"tags":["nvd","cve.org"],"epss":0.00193,"epssPercentile":0.09307,"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-22T13:32:53.226741Z"},"ingestedAt":"2026-09-21T20:52:58.294Z","slug":"CVE-2026-77523","body":"## Overview\n\nMaxKB is an open-source AI assistant for enterprise. In version 2.10.3-lts and earlier, the model parameter form route authorizes the path workspace but ModelSerializer.ModelParams loads and saves a Model by id alone without including workspace_id in the query. An authenticated user with model read permission in an attacker-controlled workspace can supply a known victim model_id to read or overwrite the victim's model_params_form in another workspace, potentially altering workflows that use those defaults. No fixed version is available as of this review.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":41,"depthScoreParts":{"impact":40.7,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}