MinorCritical vulnerability
CVE-2026-107589 (CVSS 7.5)
NVD · officialPublished Oct 8, 2026Risk 23/100
Insufficient job validation for service accounts in Jacamar CI prior to v0.30.0 allows authenticated CI users to generate arbitrary account names.
Technical details
CVSS
7.5
AV:Adjacent NetworkAC:LowPR:LowUI:RequiredC:HighI:LowA:Low
Evidence and sources
This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.
Open primary source