criticalCVSS 9.1Vulnerability

GHSA-9h64-2846-7x7f

## Summary Eight independently-filed bug fixes in the v7.1.3 → v7.5.0 release window collectively close a set of multi-tenant isolation, access-control, and policy-enforcement defects in the AxonFlow platform. They are filed as a single consolidated advisory because the recommended remediation is a single platform upgrade. ## Affected versions `< 7.5.0`. Specific items affect different earlier minors; see Impact below. ## Patched versions `>= 7.5.0`. ## Impact | # | Item | Affected | Patched | CWE | |---|---|---|---|---| | 1 | **MAP execution multi-tenant isolation.** A body-supplied `org_id` could override the Basic-auth-derived org for both execution recording and policy evaluation. In multi-tenant deployments with shared agents, this could record one tenant's request under another tenant's audit log and evaluate it under the wrong tenant's policy set. | `< 7.4.5` | `>= 7.4.5` | CWE-863 | | 2 | **Cross-tenant audit-log leak via evidence/explain handlers.** The handlers behind `/api/v1/evidence/*` and `/api/v1/decisions/*/explain` failed open when the tenant context was missing, returning data scoped to a different tenant or returning data without scope. | `< 7.2.0` | `>= 7.2.0` | CWE-200, CWE-863 | | 3 | **License-validation bypass on `onboard-customer`.** The portal customer-onboard endpoint lacked authentication and license-key validation, allowing unauthenticated callers to invoke the onboard flow. | `< 7.2.0` | `>= 7.2.0` | CWE-862 | | 4 | **Tenant-scope fail-open on evidence/explain.** Distinct from item 2: when tenant headers were absent, the handler defaulted to a permissive read scope rather than refusing the request. | `< 7.2.0` | `>= 7.2.0` | CWE-862 | | 5 | **Internal-service auth fallback bypass in non-Community modes.** Evaluation/Enterprise builds carried an auth fallback path that, under specific request shapes, could be exploited to bypass `apiAuthMiddleware`. | `< 7.2.0` | `>= 7.2.0` | CWE-863 | | 6 | **Login timing / org-existence disclosu

Properties

ghsa_id
GHSA-9h64-2846-7x7f
severity
critical
summary
Axonflow fixed bugs by implementing multi-tenant isolation and access-control hardening
cvss_score
9.1
cve_id
GHSA-9h64-2846-7x7f
cvss_vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:L
is_ghsa_only
true
ghsa_published
2026-05-06T23:13:27Z
source_url
https://github.com/advisories/GHSA-9h64-2846-7x7f
ghsa_updated
2026-05-06T23:13:30Z

Related Entities (9)

AFFECTS (1)

[Software]go/github.com/getaxonflow/axonflow

HAS_WEAKNESS (6)

[Weakness]Observable Timing Discrepancy
[Weakness]Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
[Weakness]Allocation of Resources Without Limits or Throttling
[Weakness]Missing Authorization
[Weakness]Exposure of Sensitive Information to an Unauthorized Actor
[Weakness]Incorrect Authorization

REPORTED_BY (1)

[Source]GitHub Advisory Database

VULNERABLE_TO (1)

[Software]go/github.com/getaxonflow/axonflow

Explore deeper with Ninja Signal's threat intelligence graph

GHSA-9h64-2846-7x7f (CVSS 9.1) — Ninja Signal Threat Intelligence | Ninja Signal