CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100860

MEDIUMCVSS 5.5NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

heym before 0.0.105 does not act on the result of the credential authorization lookup in the Redis workflow node (backend/app/services/node_execution/nodes/redis_node.py). When _get_accessible_credential returns None — because the credential ID does not exist or the caller is not authorized to use i

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-100860 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100860

MEDIUMCVSS 5.5NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

heym before 0.0.105 does not act on the result of the credential authorization lookup in the Redis workflow node (backend/app/services/node_execution/nodes/redis_node.py). When _get_accessible_credential returns None — because the credential ID does not exist or the caller is not authorized to use i

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]