CVE-2026-82281 | Cinnamon Kotaemon up to 0.12.0 control.py improper authorization
A vulnerability described as critical has been identified in Cinnamon Kotaemon up to 0.12.0. Affected is the function select_conv/delete_conv/rename_conv/on_set_public_conversation of the file control.py. The manipulation results in improper authorization.
This vulnerability is reported as CVE-2026-82281. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More