---
id: CVE-2026-92765
title: >-
  ArcherySec through 2.0.6 fails to validate organization ownership in the
  WebScanVulnList endpoint, allowing authenticated users to read vulnerability
  findings from other organizations
summary: >-
  ArcherySec through 2.0.6 fails to validate organization ownership in the
  WebScanVulnList endpoint, allowing authenticated users to read vulnerability
  findings from other organizations. Attackers can supply arbitrary scan
  identifiers to r…
severity: medium
cvss: 6.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-639
vendor: archerysec
product: archerysec
affected:
  - archerysec <= 2.0.6
published: '2026-09-16'
updated: '2026-09-24'
sourceUpdated: '2026-09-24T20:48:01.433'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-92765'
references:
  - url: 'https://github.com/archerysec/archerysec'
    label: disclosure@vulncheck.com
  - url: >-
      https://github.com/archerysec/archerysec/blob/v2.0.6/webscanners/views.py#L297-L313
    label: disclosure@vulncheck.com
  - url: 'https://github.com/archerysec/archerysec/issues/676'
    label: disclosure@vulncheck.com
  - url: >-
      https://www.vulncheck.com/advisories/archerysec-through-2.0.6-information-disclosure-via-webscanvulnlist
    label: disclosure@vulncheck.com
  - url: 'https://github.com/archerysec/archerysec/issues/676'
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
  - cve.org
  - exploit-available
epss: 0.00451
epssPercentile: 0.36505
exploitAvailable: true
ssvc:
  exploitation: poc
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2026-09-17T15:01:33.865944Z'
ingestedAt: '2026-09-16T21:05:36.893Z'
---

## Overview

ArcherySec through 2.0.6 fails to validate organization ownership in the WebScanVulnList endpoint, allowing authenticated users to read vulnerability findings from other organizations. Attackers can supply arbitrary scan identifiers to retrieve complete web vulnerability data including titles, severities, statuses, and analyst notes from other tenants.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
