Information Disclosure in AshAi by Ash Project
CVE-2026-78230

6MEDIUM

Key Information:

Status
Vendor
CVE Published:
8 September 2026

What is CVE-2026-78230?

The AshAi library exposes a serious vulnerability that allows unauthorized access to sensitive data through aggregate queries. The read tool can accept aggregated result types like min, max, sum, and avg on specified fields, potentially revealing restricted data, including personally identifiable information (PII), that should be kept confidential based on actor-specific field policies. Despite redaction mechanisms for forbidden fields, the aggregation function permits a breach of privacy by returning actual values from fields that should not be accessible. The issue has been addressed by updating the authorization checks to ensure that aggregate field access aligns with a resource's field policies, preventing unauthorized queries.

Affected Version(s)

ash_ai 0.1.0 < 1.0.3

ash_ai 2ba234b50946a3b8116190c8467f9f4dfa5edce7 < 9c02de581625c342c9870a672830bff28c1d701e

References

CVSS V4

Score:
6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Zach Daniel / Ash Project
Jonatan Männchen / EEF
Aaron Hong / Remedy
.