PT-2026-107542 · Backstage · Plugin-Scaffolder-Backend-Module-Confluence-To-Markdown
CVE-2026-106560
·
Published
2026-10-07
·
Updated
2026-10-07
CVSS v3.1
7.1
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:L |
Name of the Vulnerable Software and Affected Versions
@backstage/plugin-scaffolder-backend-module-confluence-to-markdown versions prior to 0.3.25
Description
Improper repository path validation in a scaffolder backend module allows an authenticated user who can execute an affected template and control its repository file location to cause generated content to be written outside the task workspace, within locations writable by the Backstage backend process.
Recommendations
Update @backstage/plugin-scaffolder-backend-module-confluence-to-markdown to version 0.3.25.
Restrict execution of templates using the affected action to trusted users.
Remove or disable the affected action until the patched package is deployed.
Exploit
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Plugin-Scaffolder-Backend-Module-Confluence-To-Markdown