Medium severity4.3NVD Advisory· Published Mar 5, 2026· Updated Jun 17, 2026
CVE-2026-3236
CVE-2026-3236
Description
In affected versions of Octopus Server it was possible to create a new API key from an existing access token resulting in the new API key having a lifetime exceeding the original API key used to mint the access token.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- advisories.octopus.com/post/2026/sa2026-02nvdVendor Advisory
News mentions
0No linked articles in our index yet.