CVE-2026-105687: Penpot: A team admin (non-owner) can remove the team owner via ::delete-team-member — missing owner-protection
Penpot is an open-source design and prototyping platform. Prior to 2.18.0, the delete-team-member RPC allows a team administrator to remove any member other than themselves but does not protect the team owner. A non-owner administrator can delete the owner's team-profile-rel membership and lock the owner out of the team and its projects, files, fonts, and media. This issue is fixed in version 2.18.0.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Penpotto a version that resolves this vulnerability.Fixed in 2.18.0
Event History
Frequently Asked Questions
Who can exploit this issue?
A team administrator who is not the team owner can exploit it. The attacker must already have administrator privileges in the affected team.
What is the impact on the owner?
The administrator can remove the owner’s team membership, locking the owner out of that team and its projects, files, fonts, and media. The issue affects availability rather than confidentiality or integrity according to the provided vector.
Which versions are affected and how is it fixed?
Penpot versions prior to 2.18.0 are affected. Upgrade to version 2.18.0, which adds owner protection to the delete-team-member operation.