CVE-2026-92788: Coze Studio through 0.5.1 Cross-Tenant Database Access via Workflow SQL Node
Coze Studio through 0.5.1 fails to validate that table names in workflow SQL customization nodes belong to the caller's workspace. Authenticated attackers can enumerate predictable table identifiers and execute SQL statements against other workspaces' memory databases to read, insert, or delete data.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
An authenticated Coze Studio user who can use workflow SQL customization nodes can exploit it. The attacker needs only low-level privileges and can target other workspaces by enumerating predictable table identifiers.
What data and operations are exposed?
An attacker can execute SQL statements against memory databases belonging to other workspaces. This can allow reading data as well as inserting or deleting it.
Are installations beyond version 0.5.1 affected?
The affected range stated is Coze Studio through 0.5.1. The provided information does not establish whether later versions are affected or fixed.