CVE-2026-82818 | dibo-software diboot 3.8.0 Tenant Resource Assignment /api/iam/tenant/resource tenantId access control

SecurityVulns

A vulnerability described as critical has been identified in dibo-software diboot 3.8.0. This affects an unknown part of the file /api/iam/tenant/resource of the component Tenant Resource Assignment Handler. Executing a manipulation of the argument tenantId can lead to improper access controls.

The identification of this vulnerability is CVE-2026-82818. The attack may be launched remotely. Furthermore, there is an exploit available.

The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More