PatchSiren

nektos CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH nektos CVE published 2026-08-24

CVE-2026-76847

CVE-2026-76847 debrief based on the supplied source corpus. The CVE record was published on 2026-08-24T14:17:02.857Z and has not been modified since then. The act workflow has a high-severity vulnerability that allows unauthorized access and manipulation of build artifacts due to missing authorization and authentication in the Artifacts V4 backend. This vulnerability can expose build outputs such as secre [truncated]