CVE-2026-11852
Last modified
CVE-2026-11852 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. Debusine is an integrated solution to build, distribute and maintain a Debian-based distribution. Files managed by debusine are organized into artifacts. EPSS estimates a 0.20% chance of exploitation in the next 30 days.
Description
Debusine is an integrated solution to build, distribute and maintain a Debian-based distribution. Files managed by debusine are organized into artifacts. The endpoints that create and delete relationships between artifacts enforced no permissions checks beyond being able to see the artifacts in question.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-11852?
How severe is CVE-2026-11852?
How do I fix CVE-2026-11852?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-11847The iVEC-IEI Virtualization Edge Computer developed by IEI…5.3
- CVE-2026-11848The iRM-IEI Remote Management developed by IEI Integration C…7.9
- CVE-2026-11849The iRM-IEI Remote Management developed by IEI Integration …9.8
- CVE-2026-1185A configuration file on the local file system had improper i…8.8
- CVE-2026-11850An integer underflow vulnerability was found in MIT krb5 in …5
- CVE-2026-11851Improper Neutralization of Special Elements used in an SQL C…5.9
- CVE-2026-11853Debusine is an integrated solution to build, distribute and …6.5
- CVE-2026-11855The Simple Membership WordPress plugin before 4.7.5 does not…8.8
- CVE-2026-11856Successfully using libcurl to do a transfer to a specific HT…9.8
- CVE-2026-11857Quanos SCHEMA ST4 on-premises contains a local privilege esc…8.4
- CVE-2026-11858Quanos SCHEMA ST4 on-premises contains a local privilege esc…8.4
- CVE-2026-11859An HTML injection vulnerability in the "fetch links" email s…2
Are you affected by CVE-2026-11852?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
