Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 11 Sep 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 11 Sep 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw resulting in XML external entity (XXE) was found in Akana API Platform in which references were improperly restricted during XML-to-JSON processing. The issue affects Akana versions 2026.1, 2025.1.1, and all versions before 2024.1.6 (including older unsupported versions of Akana) and has been fixed as a security patch in the latest release of supported versions. | |
| Title | XML External Entity in Akana API Platform | |
| Weaknesses | CWE-611 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Perforce
Published:
Updated: 2026-09-11T13:57:07.579Z
Reserved: 2026-09-11T07:46:11.541Z
Link: CVE-2026-89212
Updated: 2026-09-11T13:57:00.528Z
Status : Received
Published: 2026-09-11T14:17:36.847
Modified: 2026-09-11T14:17:36.847
Link: CVE-2026-89212
No data.
OpenCVE Enrichment
Updated: 2026-09-11T15:00:14Z