PatchSiren

Curiosity GmbH CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Curiosity GmbH CVE published 2026-09-16

CVE-2026-88817

CVE-2026-88817 is a high-severity vulnerability in Curiosity Workspace that allows an authenticated, non-guest user to enroll themselves as an administrator and member of an existing access group without an invitation or approval. This issue has a CVSS score of 8.7 and was published on 2026-09-16T13:18:07.837Z. The vulnerability could allow unauthorized access to sensitive areas of the application and pot [truncated]