CVE-2026-48050 | Basekick-Labs Arc up to 26.06.0 Auth Middleware internal/api/server.go pprof.New missing authentication
A vulnerability marked as critical has been reported in Basekick-Labs Arc up to 26.06.0. This vulnerability affects the function pprof.New of the file internal/api/server.go of the component Auth Middleware. The manipulation leads to missing authentication.
This vulnerability is referenced as CVE-2026-48050. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More