hatchet CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

hatchet vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to hatchet, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2026-42572 Hatchet is a platform for orchestrating background tasks, AI agents, and durable workflows at scale. Prior to 0.83.39, a missing authorization directive on the GET /api/v1/stable/dags/tasks endpoint caused Hatchet's tenant-membership check to be skipped for this route. A user authenticated to any tenant on the same Hatchet instance could query the endpoint with another tenant's UUID and a DAG UUID belonging to that tenant, and receive task metadata for that DAG. This vulnerability is fixed in 0. [email protected] 5.3 0.03% 2026-05-14 2026-05-27
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence