CVE-2026-85093Medium· 6.5▾ TwilightPoC availableCheshire Cat AI's GET /memory/collections/{collection_id}/points endpoint fails to apply per-user filtering when retrieving episodic memory points. Authenticated attackers with MEMORY:READ permission can retrieve all users' stored conver…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 35.8 · likelihood 0.1 · exploitation 12
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Exploit-prediction probability, daily snapshots since Sep 10.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.3%
Exploit / PoC code exists
Cheshire Cat AI's GET /memory/collections/{collection_id}/points endpoint fails to apply per-user filtering when retrieving episodic memory points. Authenticated attackers with MEMORY:READ permission can retrieve all users' stored conversation messages and personal data by paginating through the collection using the offset cursor.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-62998Medium· 4.3REDAXO is a PHP-based content management system
CVE-2026-63002Medium· 4.8REDAXO is a PHP-based content management system
CVE-2026-91129Medium· 5.4Home Assistant is open source home automation software focused on local control and privacy
CVE-2026-53581Critical· 9.0OPNsense is a FreeBSD based firewall and routing platform
CVE-2026-63001Medium· 4.8REDAXO is a PHP-based content management system
CVE-2026-63000Medium· 6.4REDAXO is a PHP-based content management system