CVE-2026-101271
EUVD-2026-8875429.09.2026, 13:17
OAuth credentials (access tokens) are valid for the entirety of their lifetime, even if the application (OAuth client) they are bound to is manually disabled.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| pretix | pretix | 0.0 ≤ 𝑥 < 2026.5.5 | CNA |
| pretix | pretix | 2026.6.0 ≤ 𝑥 < 2026.6.2 | CNA |
| pretix | pretix | 2026.7.0 ≤ 𝑥 < 2026.7.1 | CNA |
Common Weakness Enumeration