{"id":"CVE-2026-88939","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-88939","summary":"knowns through 0.33.0 exempts the project.set action from permission guard checks unconditionally, allowing read-only agent sessions to bypass restrictions. Attackers can invoke project.set…","details":"knowns through 0.33.0 exempts the project.set action from permission guard checks unconditionally, allowing read-only agent sessions to bypass restrictions. Attackers can invoke project.set to repoint the server at another project directory and obtain write access capabilities.","published":"2026-09-10T16:18:12.577","modified":"2026-09-10T16:18:12.577","cvss":{"score":8.3,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[],"fix":null,"references":[{"type":"WEB","url":"https://github.com/knowns-dev/knowns/blob/v0.33.0/internal/permissions/guard.go#L104-L113"},{"type":"WEB","url":"https://github.com/knowns-dev/knowns/blob/v0.33.0/internal/permissions/registry.go#L51-L54"},{"type":"WEB","url":"https://github.com/knowns-dev/knowns/security/advisories/GHSA-h73x-698r-qrvg"},{"type":"WEB","url":"https://www.vulncheck.com/advisories/knowns-through-0.33.0-authorization-bypass-via-project-set-bootstrap-exemption"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-09-10T16:18:12.577"}}