CRITICAL 10.0 NVD

CVE-2026-100103

Perforce P4 Search container images prior to 2026.4.2 reset the service authentication token to a publicly documented default value. An unauthenticated attacker

Perforce P4 Search container images prior to 2026.4.2 reset the service authentication token to a publicly documented default value. An unauthenticated attacker with network access can obtain the highest application privilege, potentially leading to arbitrary code execution and compromise of the connected P4 Server.

References

Published: 2026-10-05 · Source: NVD · Feed updated: 2026-10-05
This critical severity vulnerability with a CVSS score of 10.0 was published on 2026-10-05 via NVD.

Risk Timeline

CVE Disclosed2026-10-05 · -1 days ago

Remediation Resources

vulnfeed aggregates 7640 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.