Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Ta-Mu-Ta

#53695of 56,335
4.3Total CVSS
Vulnerabilities · 1
PT-2026-56467
4.3
2026-07-08
Seaweedfs · Seaweedfs · CVE-2026-55873
**Name of the Vulnerable Software and Affected Versions** SeaweedFS versions 4.08 through 4.33 **Description** Requests signed with the SigV4 service `s3tables` are routed to the S3Tables management API. In this process, authorization collapses account-less S3 identities into a shared admin account and fails open. This allows an authenticated low-privileged S3 user to enumerate Amazon Resource Names (ARNs) and table bucket names owned by the administrator. **Recommendations** Update SeaweedFS to version 4.34.