Vulnerabilities
Report: CVE-2026-23536 - Feast: unauthenticated arbitrary file read
CVE ID :CVE-2026-23536 Published : March 20, 2026, 9:58 p.m. | 25 minutes ago Description :A security issue was discovered in the Feast Feature Server's `/read-document` endpoint that allows an unauthenticated remote attacker to read any file accessible to the server process. By sending a specially crafted HTTP POST request, an attacker can bypass intended access restrictions to potentially retrieve sensitive system files, application configurations, and credentials. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...