VDB

GCVE-110-AUR-2026-003480

GCVE-110-AUR-2026-003480
Advisory Published
Vulnetix · Advisory published October 2, 2026
The Arch User Repository (AUR) package `authentik-agent-bin` was flagged as malicious by automated PKGBUILD analysis (3 indicator(s)). Building or installing this package may execute attacker-controlled code. This verdict is produced by static analysis and is subject to human review.

Weaknesses (CWE)

CWE-506Embedded Malicious Code

Affected Products

VendorProductVersionsPlatforms
aurauthentik-agent-bin0.50.1-1 (affected), 0.63.3-1 (affected)—

References

advisory
web
web
web
web
web
web
web
web
web
web
web
web
web
web
web
web
web
web
web
web
web

Browse GCVE Records

3,109 records in the GCVE database · Updated October 6, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›