CVE-2026-55624
Received Received - Intake

Item Duplication Vulnerability in MintyItanium Lost-Auction

Vulnerability report for CVE-2026-55624, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-25

Last updated on: 2026-08-25

Assigner: GitHub, Inc.

Description

MintyItanium Lost-Auction is an auction plugin for Minecraft. Prior to commit 88c920b05042929db334ba06d57f052b42d6b3f8, players can take items like barrier blocks or duplicate items from the GUI. Commit 88c920b05042929db334ba06d57f052b42d6b3f8 fixes the issue.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-25
Last Modified
2026-08-25
Generated
2026-08-25
AI Q&A
2026-08-25
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
mintyitanium lost-auction to 88c920b05042929db334ba06d57f052b42d6b3f8 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-670 The code contains a control flow path that does not reflect the algorithm that the path is intended to implement, leading to incorrect behavior any time this path is navigated.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability in the MintyItanium Lost-Auction plugin for Minecraft allows players to exploit the GUI to take items like barrier blocks or duplicate items. The issue was fixed in commit 88c920b05042929db334ba06d57f052b42d6b3f8.

Impact Analysis

Players could gain unfair advantages by duplicating items or obtaining restricted blocks, potentially disrupting gameplay balance and economy within the Minecraft server.

Compliance Impact

This vulnerability does not provide sufficient information to determine its impact on compliance with GDPR, HIPAA, or other standards. The CVE describes a plugin-specific issue involving item duplication or manipulation in a Minecraft auction GUI, which does not directly relate to data protection or privacy regulations.

Mitigation Strategies

Update the MintyItanium Lost-Auction plugin to commit 88c920b05042929db334ba06d57f052b42d6b3f8 or later to fix the item duplication and barrier block issues.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-55624. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart