CVE-2026-88952 | team-alembic ash_authentication up to 4.14.9/5.0.0-rc.13 OAuth2 User Resolver improper authentication
A vulnerability identified as critical has been detected in team-alembic ash_authentication up to 4.14.9/5.0.0-rc.13. This affects the function AshAuthentication.Strategy.OAuth2.UserResolver.resolve of the component OAuth2 User Resolver. Performing a manipulation results in improper authentication.
This vulnerability is known as CVE-2026-88952. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.VulDB Recent EntriesRead More