CVE-2026-82280: Quivr Prompt Endpoints Missing Ownership Validation

Published Aug 28, 2026
·
Updated

Quivr through 0.0.322 fails to validate ownership in prompt endpoints, allowing authenticated users to modify any prompt by identifier. Attackers with read-only access to shared brains can read exposed prompt identifiers and overwrite system prompts affecting all brain users.

Affected Software

1 affected component
Quivr<=0.0.322

Event History

Aug 28, 2026
CVE Published
via MITRE·04:19 PM
Data Sourced
via MITRE·04:19 PM
DescriptionSeverityWeakness

Frequently Asked Questions

1

Who is most exposed to this issue?

Deployments where prompts are shared through brains are most exposed. A user with read-only access to a shared brain may be able to obtain prompt identifiers and overwrite system prompts used by all users of that brain.

2

What access does an attacker need?

The attacker must be authenticated and have at least read-only access to a shared brain containing exposed prompt identifiers. No user interaction is required.

3

Which versions are affected?

Quivr through version 0.0.322 is affected.

4

What is the impact of successful exploitation?

An attacker can modify prompts they do not own by supplying their identifiers to the affected prompt endpoints. Overwriting a system prompt can affect all users of the associated brain.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203