CVE-2026-75932
Jet Admin
Jet Admin allows an attacker to create a malicious app and connect it to a target user's custom domain, edit the authentication configuration, and reroute traffic to the attacker-controlled app. Once connected to the target domain, the attacker's workspace is populated with the victim's OAuth Client ID and Client Secret if the victim is using an OAuth provider.
- CVSS
- 9.2
- EPSS
- - - percentile
- CISA KEV
- Not listed
- Published
- 2026.08.22