Verified vulnerability record
CVE-2026-26190
milvus Authentication Bypass · affected before 2.5.27
This vulnerability is fixed in 2.5.27 and 2.6.10
Sensor telemetry
30 attempts · 5 sensors
First-party observations recorded across 4 attacker IPs.
Evidence
Active exploitation observed
Independent exploitation attestation added to the KEV Intelligence record.
Actionable artifact
Nuclei template available
Public scanner coverage helps validate exposed systems.
Evidence, telemetry, and action stay attached to the CVE.
Browse exploited CVEs →