Authorization Bypass in Chatbot UI Allows Access to Private User Files
CVE-2026-85693

7.1HIGH

Key Information:

Vendor
CVE Published:
4 September 2026

What is CVE-2026-85693?

The Chatbot UI software includes a vulnerability that allows authenticated users to bypass authorization checks in the retrieval endpoint. By manipulating file UUIDs, attackers can access private files belonging to other users, compromising sensitive data. This occurs due to the use of a service-role Supabase client, which fails to enforce proper row-level security. As a result, it allows unauthorized retrieval of indexed content from victim files through specially crafted POST requests, posing a significant privacy risk.

Affected Version(s)

chatbot-ui 0 <= 81328b61d2a4ab597a7a057be70e785cf756d9f8

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

George Chen
.