Authorization Bypass in Chatbot UI Allows Access to Private User Files
CVE-2026-85693
7.1HIGH
What is CVE-2026-85693?
The Chatbot UI software includes a vulnerability that allows authenticated users to bypass authorization checks in the retrieval endpoint. By manipulating file UUIDs, attackers can access private files belonging to other users, compromising sensitive data. This occurs due to the use of a service-role Supabase client, which fails to enforce proper row-level security. As a result, it allows unauthorized retrieval of indexed content from victim files through specially crafted POST requests, posing a significant privacy risk.
Affected Version(s)
chatbot-ui 0 <= 81328b61d2a4ab597a7a057be70e785cf756d9f8
