Understanding and Defending Against CVE-2026-103105: Improper Access Control in Pexip Infinity
CVE-2026-103105 is a high-severity vulnerability affecting Pexip Infinity versions before 38.2, 39.0, 39.1, and 40.0. It allows an attacker with local access to execute arbitrary code as an unprivileged user on another node within the Pexip Infinity installation. This vulnerability has a CVSS score of 8.8, indicating a high level of severity. Understanding the root cause, attack surface, and exploitation mechanics is crucial for defenders to implement effective mitigations.