All vulnerabilities
CRITICALSupply chain

CVE-2026-55518

RubyGems · avo

Summary

Avo: Missing Authorization in Avo Association Attach Endpoint Allows Unauthorized Relationship Manipulation and Privilege Escalation

References