Browse all 4 CVE security advisories affecting akuity. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-32828 | Kargo: SSRF in Promotion http/http-download Steps Enables Internal Network Access and Data Exfiltration — kargoCWE-918 | 9.1 | - | 2026-03-20 |
| CVE-2026-27112 | Kargo has an Authorization Bypass Vulnerability in Batch Resource Creation API Endpoints — kargoCWE-863 | 8.2AI | HighAI | 2026-02-20 |
| CVE-2026-27111 | Kargo has Missing Authorization Vulnerabilities in Approval & Promotion REST API Endpoints — kargoCWE-862 | 8.1AI | HighAI | 2026-02-20 |
| CVE-2026-24748 | Kargo's `GetConfig()` and `RefreshResource()` API endpoints allow unauthenticated access — kargoCWE-863 | 5.3AI | MediumAI | 2026-01-27 |
This page lists every published CVE security advisory associated with akuity. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.