Onyx to platforma AI o otwartym kodzie źródłowym. W wersjach poprzedzających 3.0.9, 3.1.6 i 3.2.6 endpoint GET /chat/file/{file_id} pozwala każdemu uwierzytelnionemu użytkownikowi pobrać pliki wgranego przez innego użytkownika, podając UUID pliku. Endpoint sprawdza jedynie, czy rozmówca jest uwierzytelniony, ale nigdy nie weryfikuje przynależności pliku. Atakujący, który zna lub uzyskał UUID pliku, może uzyskać dostęp do poufnych dokumentów, załączników czatu i innych plików wgranych przez dowolnego użytkownika w systemie. Luka została naprawiona w wersjach 3.0.9, 3.1.6 i 3.2.6.
▸ Pokaż oryginał (EN)
Onyx is an open-source AI platform. Prior to versions 3.0.9, 3.1.6, and 3.2.6, the GET /chat/file/{file_id} endpoint allows any authenticated user to download any other user's uploaded files by providing the file UUID. The endpoint verifies the caller is authenticated but never checks that the file belongs to them. An attacker who knows or obtains a file UUID can access confidential documents, chat attachments, and other files uploaded by any user in the system. This issue has been patched in versions 3.0.9, 3.1.6, and 3.2.6.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NOnyx
APPOnyx< 3.0.93.1.0 – 3.1.6 (bez)3.2.0 – 3.2.6 (bez)
Powiązane podatności
An improper access control vulnerability exists in danswer-ai/danswer version v0.3.94. This vulnerability allo...
Onyx to platforma AI o otwartym kodzie. Przed wersjami 3.0.9, 3.1.6 i 3.2.6, endpoint POST /chat/stop-chat-ses...
Authorization bypass in update_user_group in onyx-dot-app Onyx Enterprise Edition 0.27.0 allows remote authent...
In danswer-ai/danswer v0.3.94, administrators can set the visibility of pages within a workspace, including th...
Znaleziono krytyczną podatność w Onyx do wersji 0.29.1 w funkcji generate_simple_sql pliku backend/onyx/agents...