CVE-2026-41948 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 4 intelligence report mentions.
CVE-2026-41948 is a vulnerability tracked across 1 threat cluster and 4 intelligence report mentions on ThreatCluster. First observed June 23, 2026; most recent activity June 23, 2026.
Zafran Labs identified four vulnerabilities in Dify, an open-source AI platform used by over one million applications, including critical flaws allowing cross-tenant data leakage. Two vulnerabilities, CVE-2026-41947 and…
CVE-2026-41948 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 4 intelligence report mentions.
The most recent intelligence report mentioning CVE-2026-41948 on ThreatCluster is dated June 23, 2026.
Across ThreatCluster reporting, CVE-2026-41948 most frequently co-occurs with Dropping Elephant, Data Breach, Project DarkSide, Maersk, Panasonic, among 12 tracked related entities.
The most significant recent cluster is “Critical DifyTap Vulnerabilities Expose AI Data Across 1M+ Apps” (8 articles · Updated June 23, 2026). CVE-2026-41948 appears across 1 threat cluster in total, listed above with sources.
CVE-2026-41948 appears in 4 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.