CVE-2026-77516

CVE-2026-77516 published: MaxKB is an open-source AI assistant for enterprise. From version 2.0.0 through 2.9.2, a lowest-role workspace member denied access to a tool by WorkspaceUserResourcePermission can still bind its identifier through tool_ids, skill_tool_ids, or mcp_tool_ids ...

View full NVD advisory → ← Back to CVE watch