{
  "title": "CVE of the day — CVE-2026-75851 (CVSS 9,9, criticism)",
  "title_variants": [
    {
      "id": "v0",
      "title": "CVE of the day — CVE-2026-75851 (CVSS 9,9, criticism)"
    },
    {
      "id": "v1",
      "title": "CVE-2026-75851: critical vulnerability, CVSS 9.9/10, type management improper privileges,"
    }
  ],
  "description": "CVE-2026-75851: critical vulnerability, CVSS 9.9/10, type management improper privileges, exploitable remotely, with low privileges, without user interaction. ArcadeDB server (com.arcadedb:arcadedb-server) in versions 26.7.3 and earlier fails to propagate the authenticated principal to asynchronous..",
  "keywords": [
    "c",
    "cve-2026-75851",
    "vulnerability",
    "critical vulnerability",
    "♪",
    "cvs",
    "cybersecurity",
    "cybersecurity",
    "♪",
    "security update"
  ],
  "scenes": [
    {
      "title": "CVE-2026- 75851",
      "subtitle": "CVSS 9,9",
      "text": "CVE-2026-75851: Critical gravity, CVSS score 9.9 out of 10 according to the National Vulnerability Database."
    },
    {
      "title": "Management of improper privileges",
      "subtitle": "management improper privileges · CVSS v3.1",
      "text": "ArcadeDB server (com.arcadedb:arcadedb-server) in versions 26.7.3 and earlier fails to propagate the authenticated principal to asynchronous command worker threads. When an HTTP command is submitted with.."
    },
    {
      "title": "EXPOSURE AND MITIGATION",
      "subtitle": "remotely exploitable, with low privileges, without user interaction",
      "text": "Remotely exploitable Vulnerability, with low privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD."
    }
  ],
  "publication_date": "2026-08-20T01:01:32.959Z",
  "duration": 20,
  "topic": "cve",
  "lang": "en",
  "translation_group": "cve-2026-08-20",
  "poster": "cve-2026-08-20-en.jpg",
  "preview": "cve-2026-08-20-en.gif",
  "og_card": "cve-2026-08-20-en.og.jpg",
  "audiogram": "cve-2026-08-20-en.audiogram.mp4",
  "captions": "cve-2026-08-20-en.vtt",
  "generation": {
    "procedural": true,
    "ai_generated": [
      "background",
      "voice"
    ],
    "real_data_source": "official public API",
    "filmed_real_event": false,
    "disclosure": "Procedurally generated from real public-source data; abstract AI-generated backgrounds; synthetic (TTS) voice. No real event is filmed or altered."
  },
  "transcript_text": "CVE-2026-75851: Critical gravity, CVSS score 9.9 out of 10 according to the National Vulnerability Database. ArcadeDB server (com.arcadedb:arcadedb-server) in versions 26.7.3 and earlier fails to propagate the authenticated principal to asynchronous command worker threads. When an HTTP command is submitted with.. Remotely exploitable Vulnerability, with low privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD.",
  "transcript": [
    {
      "start": 0,
      "end": 6.667,
      "text": "CVE-2026-75851: Critical gravity, CVSS score 9.9 out of 10 according to the National Vulnerability Database."
    },
    {
      "start": 6.667,
      "end": 13.333,
      "text": "ArcadeDB server (com.arcadedb:arcadedb-server) in versions 26.7.3 and earlier fails to propagate the authenticated principal to asynchronous command worker threads. When an HTTP command is submitted with.."
    },
    {
      "start": 13.333,
      "end": 20,
      "text": "Remotely exploitable Vulnerability, with low privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD."
    }
  ]
}