high
CVE-2026-15988
AI Engine cross-site request forgery -> actions as an authenticated user
- Severity
- high
- Affected product
- ai-engine
- Affected versions
- ai-engine ≤ 3.2.1
- Fixed in
- ai-engine a release above 3.2.1
- Added to NewScan
- 2026-08-01
- Detected by
- NewScan — free, self-hosted
How NewScan reports it
COMPONENT VERSION RANGE
NewScan fingerprints ai-engine from its response and reports this CVE when the detected version falls inside the affected range below.
References
Scan for this yourself — local, in-band scanning is free.
Get NewScan (FREE) →