A vulnerability was found in PrefectHQ prefect up to 3.6.21. It has been classified as critical. This impacts the function
endswith of the file /api/health of the component Health Check API. Performing a manipulation results in improper authentication.
This vulnerability is reported as CVE-2026-7722. The attack is possible to be carried out remotely. Moreover, an exploit is present.
Upgrading the affected component is recommended.