PT-2026-57258 · Deloitte · Ai Assist For Customer

CVE-2026-57475

·

Published

2026-07-10

·

Updated

2026-07-21

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Deloitte AI Assist for Customer (affected versions not specified)
Description Public-facing API endpoints accepted unauthenticated POST requests, allowing a remote attacker to make limited additions to the configuration. These additions were not utilized by the system.
Recommendations Restrict network access and enforce authentication for the affected API endpoints.

Fix

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-57475

Affected Products

Ai Assist For Customer