CVE-2026-94220 | Apache APISIX feishu-auth/dingtalk-auth session fixiation
A vulnerability labeled as very critical has been found in Apache APISIX. The impacted element is an unknown function of the component feishu-auth/dingtalk-auth. Such manipulation leads to session fixiation.
This vulnerability is uniquely identified as CVE-2026-94220. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More