CVE-2026-7723Disclosure

LOWCVSS 5.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw has been found in PrefectHQ prefect up to 3.6.13. Affected is an unknown function of the file /api/events/in of the component WebSocket Endpoint. Executing a manipulation can lead to missing authentication. The attack may be performed from remote. The exploit has been published and may be used. Upgrading to version 3.6.14 is able to address this issue. This patch is called f8afecadf88ea5f73694dafa3a365b9d8fae1ad6. It is recommended to upgrade the affected component. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-287CWE-306

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-05-04); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-05-04: 1Mentions · 2026-05-24: 1Patch / Workaround · 2026-05-24: 1Technical Details · 2026-05-04: 1Technical Details · 2026-05-24: 105-0405-24
Signal classification2 categories
Disclosure
150.0%
Patch
150.0%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-05-041
Disclosure1
2026-05-241
Patch1
Full discourse2 posts
  • DFIR Lab@DFIR_Lab
    Patch

    🚨 HIGH: CVE-2026-7723 (CVSS 7.3) - Missing authentication in PrefectHQ prefect ≤3.6.13 WebSocket endpoint /api/events/in. Exploit published. Upgrade to 3.6.14 immediately. #CVE #Vulnerability #PatchNow #ThreatIntel https://t.co/f2oE2EoqLT

    Post summary

    CVE‑2026‑7723 exposes a missing‑authentication flaw in PrefectHQ’s WebSocket endpoint, for which an exploit has been released; users are urged to immediately upgrade to version 3.6.14.

    0000069
    30 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7723 Authentication Bypass in PrefectHQ Prefect Up To 3.6.13 WebSocket Endpoint https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7723

    Post summary

    A newly reported authentication bypass in PrefectHQ Prefect versions up to 3.6.13 via a WebSocket endpoint.

    0000047
    4.0K followersView on X

Explore more