CVE-2026-82746 | ash-project ash up to 3.32.1 UpdateMany update_many.ex Ash.update_many improper authorization

SecurityVulns

A vulnerability classified as problematic was found in ash-project ash up to 3.32.1. Affected by this issue is the function Ash.update_many of the file lib/ash/actions/update/update_many.ex of the component UpdateMany. The manipulation results in improper authorization.

This vulnerability is known as CVE-2026-82746. It is possible to launch the attack remotely. No exploit is available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More