CRITICAL 9.1 NVD
CVE-2026-79916
MaxKB is an open-source AI assistant for enterprise. Prior to 2.10.5-lts, authenticated workspace members can inject control characters into AWS Bedrock access_
MaxKB is an open-source AI assistant for enterprise. Prior to 2.10.5-lts, authenticated workspace members can inject control characters into AWS Bedrock access_key_id and secret_access_key fields that _update_aws_credentials writes to /root/.aws/credentials without safe parsing. An attacker can append a new AWS profile containing credential_process, then select that profile during a later model-validation request so botocore executes an attacker-controlled command as root. This vulnerability is fixed in 2.10.5-lts.
References
- https://github.com/1Panel-dev/MaxKB/commit/a1e413d196004421ab0953ee0baa13d4ca0fe3c4
- https://github.com/1Panel-dev/MaxKB/pull/6418
- https://github.com/1Panel-dev/MaxKB/releases/tag/v2.10.5-lts
- https://github.com/1Panel-dev/MaxKB/security/advisories/GHSA-2324-7xjr-9qxg
This critical severity vulnerability with a CVSS score of 9.1 was published on 2026-09-21 via NVD.
Risk Timeline
CVE Disclosed2026-09-21 · -1 days ago
Remediation Resources
vulnfeed aggregates 14328 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.