CVE-2026-54533
vantage6 node has an Improper Access Control issue
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
vantage6 is an open-source infrastructure for privacy preserving analysis. Prior to version 5.0.0, malicious algorithms can potentially access other algorithms input and output files. Version 5.0.0 fixes the issue. As a workaround, verify and restrict the algorithm containers that are allowed to run on the node.
| CWE | CWE-284 |
| Vendor | vantage6 |
| Product | vantage6 |
| Published | Jun 17, 2026 |
Stay Ahead of the Next One
Get instant alerts for vantage6 vantage6
Be the first to know when new unknown vulnerabilities affecting vantage6 vantage6 are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
vantage6 / vantage6
< 5.0.0
References
github.com: https://github.com/vantage6/vantage6/security/advisories/GHSA-x9f6-9rvm-mmrg github.com: https://github.com/vantage6/vantage6/issues/1932 docs.vantage6.ai: https://docs.vantage6.ai/usage/running-the-node/security github.com: https://github.com/vantage6/vantage6/blob/main/docs/release_notes.rst#500