A vulnerability labeled as problematic has been found in misskey-dev Misskey up to 2026.5.3. This vulnerability affects unknown code of the component JSON-LD Signature Validation. Executing a manipulation can lead to time-of-check time-of-use.

This vulnerability is handled as CVE-2026-47746. The attack can be executed remotely. There is not any exploit available.

The affected component should be upgraded.