
🚨*CVE* CVE-2026-59100 LobeChat through 2.2.9 contains a broken object level authorization vulnerability that allows authenticated attackers to access and modify other users' chat-group age… https://www.cve.org/CVERecord?id=CVE-2026-59100 ----- Traducción: CVE-2026-59100 Lob… http://infoflow.cloud`
Post summary
The tweet announces a broken object‑level authorization flaw in LobeChat 2.2.9 that lets authenticated users alter other users’ chat‑group data, but provides no PoC, exploit, patch, or evidence of active exploitation.

