Attack  ·  Glossary

Cross-tenant authorization bypass

A flaw in a multi-tenant platform that lets one customer reach, run or modify the AI agents, models or data belonging to another customer of the same vendor. It typically happens when the platform trusts a session identifier as proof of identity, so a neighbouring tenant can be impersonated without valid credentials.
These flaws are among the most dangerous in cloud AI because a compromise on one customer can spill into every other customer on the same platform — a concentration risk executives should assess when choosing agent vendors.
Track this in the live feed See how this plays out in real AI security and governance developments.
Open the feed →