CVE-2026-88940: knowns through 0.33.0 Arbitrary Directory Enumeration via workspace browse endpoint
knowns through 0.33.0 fails to validate the path query parameter in the workspace browse endpoint, allowing remote attackers to enumerate arbitrary directories on the host filesystem. Attackers can traverse the directory structure to locate project directories and identify targets for further exploitation.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
A remote attacker can exploit it without authentication or user interaction. The exposed workspace browse endpoint allows enumeration of directories on the host filesystem.
What information can an attacker obtain?
An attacker can traverse the directory structure and identify project directories. This can reveal targets and filesystem layout useful for further exploitation.
Which versions are affected?
knowns versions through 0.33.0 are affected. The provided data does not identify a fixed version or a workaround.