VYPR
Important severity7.7NVD Advisory· Published Sep 23, 2026

automation-controller: automation-controller-container: automation-controller: InventorySource.source_vars lacks prevent_search, enabling zero-privilege cross-tenant extraction of inline inventory-plugin credentials via the credential_types FieldLookupBackend count-oracle

CVE-2026-84475

Description

automation-controller: automation-controller-container: automation-controller: InventorySource.source_vars lacks prevent_search, enabling zero-privilege cross-tenant extraction of inline inventory-plugin credentials via the credential_types FieldLookupBackend count-oracle

Affected products

1

Patches

Vulnerability mechanics

News mentions

0

No linked articles in our index yet.