CVE-2026-85622 | AppFlowy-IO AppFlowy-Cloud up to 0.9.64 WebSocket Connection establish_ws_connection_v2 improper authorization

SecurityVulns

A vulnerability, which was classified as problematic, has been found in AppFlowy-IO AppFlowy-Cloud up to 0.9.64. This vulnerability affects the function establish_ws_connection_v2 of the component WebSocket Connection Handler. The manipulation leads to improper authorization.

This vulnerability is traded as CVE-2026-85622. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More