PT-2026-30452 · Tencent · Tencent Ai-Infra-Guard

Eric-Y

·

Published

2026-04-05

·

Updated

2026-04-30

·

CVE-2026-5585

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Tencent AI-Infra-Guard version 4.0
Description A vulnerability exists in Tencent AI-Infra-Guard version 4.0, specifically within the Task Detail Endpoint component. The issue resides in an unknown function of the task manager.go file located in the common/websocket/ directory. A manipulation of this component can lead to information disclosure. The attack can be initiated remotely. The exploit has been made public.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Information Disclosure

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2026-5585

Affected Products

Tencent Ai-Infra-Guard