Vulnerability  ·  2026-10-10

pacioli agent-broker consent gate allows nested cancellation to ride an enclosing consent (CVSS 5.7)

VulnerabilityLow impactGlobalCVE-2026-107841
Verified via NVD REST API (published 2026-10-09): from 0.9.6 to < 0.10.0, pacioli-guard's document-layer consent gate allows nested cancellation operations to ride any consent established by an enclosing governed act without checking whether the cancellation has its own consent, bypassing the least-privilege governance model for cancellation actions.
pacioli's entire purpose is governing agent actions in an ERP; a consent-gate bypass for cancellation operations breaks the guardrail that confines the agent's destructive actions, a governance-layer failure in an agent-broker control plane.
While an agent operates under a consent gate for a governed act, a nested cancellation operation rides that consent without verifying its own authorization, letting cancellation-type actions proceed outside their intended consent boundary.
john-broadway/pacioli 0.9.6 - < 0.10.0 (least-privilege governance / governed agent broker for ERPNext)
Upgrade to pacioli 0.10.0; fix commit https://github.com/john-broadway/pacioli/commit/f3c7219f5dde6050bd7921e0ac55afd02771250c
NVD CVE-2026-107841Fix commit
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →