CVE-2026-106497

CVE-2026-106497 published: Backstage is an open framework for building developer portals. Prior to 3.9.1, the @backstage/plugin-catalog-backend package is affected by inconsistent catalog property permission evaluation. In deployments that use affected value-based catalog permission ...

View full NVD advisory → ← Back to CVE watch