CVE-2026-5585: Tencent AI-Infra-Guard Task Detail Endpoint task_manager.go information disclosure
A vulnerability was found in Tencent AI-Infra-Guard 4.0. The affected element is an unknown function of the file common/websocket/taskmanager.go of the component Task Detail Endpoint. Performing a manipulation results in information disclosure. The attack may be initiated remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-5585?
CVE-2026-5585 is classified as a high-severity vulnerability due to the potential for information disclosure.
How do I fix CVE-2026-5585?
To fix CVE-2026-5585, upgrade Tencent AI-Infra-Guard to version 4.1 or later.
What is affected by CVE-2026-5585?
CVE-2026-5585 specifically affects Tencent AI-Infra-Guard version 4.0.
What type of vulnerability is CVE-2026-5585?
CVE-2026-5585 is an information disclosure vulnerability that affects the Task Detail Endpoint.
Where in Tencent AI-Infra-Guard can CVE-2026-5585 be found?
CVE-2026-5585 is identified in the common/websocket/task_manager.go file of Tencent AI-Infra-Guard.