CVE-2026-85693

Source
https://cve.org/CVERecord?id=CVE-2026-85693
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-85693.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-85693
Published
2026-09-04T14:32:36Z
Modified
2026-10-08T02:52:15Z
Severity
  • 7.1 (High) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N CVSS Calculator
Summary
Chatbot UI Cross-User Private File Content Disclosure via Retrieval API
Details

Chatbot UI contains an authorization bypass vulnerability in the retrieval endpoint that allows authenticated attackers to access private file content belonging to other users by supplying arbitrary file UUIDs. The endpoint uses a service-role Supabase client that bypasses row-level security and fails to validate file ownership, enabling attackers to retrieve indexed content chunks from victim files through crafted POST requests.

Database specific
{
    "cna_assigner": "VulnCheck",
    "cwe_ids": [
        "CWE-639"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/85xxx/CVE-2026-85693.json"
}
References

Affected packages

Git / github.com/mckaywrigley/chatbot-ui

Affected ranges

Type
GIT
Repo
https://github.com/mckaywrigley/chatbot-ui
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last Affected

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-85693.json"