CVE-2026-57510
Last modified
CVE-2026-57510 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. SuperPlane before 0.27.0 contains a broken object-level authorization vulnerability in the CanvasService gRPC handlers that allows authenticated users with viewer-level access to one organization to access resources belonging to other organizations by supplying arbitrary canvas or queue UUIDs without organization scoping. Attackers can read cross-tenant execution history and event payloads containing sensitive secrets, write queue items and canvas events into victim organizations, delete arbitrary canvases, and disrupt automation workflows across tenant boundaries.. EPSS estimates a 0.34% chance of exploitation in the next 30 days.
Description
SuperPlane before 0.27.0 contains a broken object-level authorization vulnerability in the CanvasService gRPC handlers that allows authenticated users with viewer-level access to one organization to access resources belonging to other organizations by supplying arbitrary canvas or queue UUIDs without organization scoping. Attackers can read cross-tenant execution history and event payloads containing sensitive secrets, write queue items and canvas events into victim organizations, delete arbitrary canvases, and disrupt automation workflows across tenant boundaries.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| superplanehq | superplane | < 0.27.0 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-57510?
How severe is CVE-2026-57510?
How do I fix CVE-2026-57510?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-57497webtransport-go is an implementation of the WebTransport pro…5.3
- CVE-2026-57498Coolify is an open-source and self-hostable tool for managin…9.6
- CVE-2026-57499Liman is open source server management software. Prior to 2.…9.1
- CVE-2026-5750An insecure direct object reference (IDOR) vulnerability in …7.6
- CVE-2026-57501Zen is a firefox-based browser. Prior to 1.21.5b, Zen's glan…0
- CVE-2026-5751justhtml versions 1.13.0 and earlier contain a parser-differ…6.1
- CVE-2026-57511SuperPlane before 0.30.0 contains an SMTP header injection v…6.3
- CVE-2026-57516Ray prior to 2.56.0 contains an unsafe deserialization vulne…8.8
- CVE-2026-57517Control Web Panel before 0.9.8.1225 contains a blind SQL inj…9.8
- CVE-2026-57518Pagekit CMS 1.0.18 contains a privilege escalation vulnerabi…8.8
- CVE-2026-5752Sandbox Escape Vulnerability in Terrarium allows arbitrary c…9.3
- CVE-2026-57520Bitwarden Server before 2026.5.0 contains a privilege escala…7.1
Are you affected by CVE-2026-57510?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
