PT-2026-107542 · Backstage · Plugin-Scaffolder-Backend-Module-Confluence-To-Markdown

CVE-2026-106560

·

Published

2026-10-07

·

Updated

2026-10-07

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:L
Name of the Vulnerable Software and Affected Versions @backstage/plugin-scaffolder-backend-module-confluence-to-markdown versions prior to 0.3.25
Description Improper repository path validation in a scaffolder backend module allows an authenticated user who can execute an affected template and control its repository file location to cause generated content to be written outside the task workspace, within locations writable by the Backstage backend process.
Recommendations Update @backstage/plugin-scaffolder-backend-module-confluence-to-markdown to version 0.3.25. Restrict execution of templates using the affected action to trusted users. Remove or disable the affected action until the patched package is deployed.

Exploit

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-106560
GHSA-2CMG-V53W-8XFP

Affected Products

Plugin-Scaffolder-Backend-Module-Confluence-To-Markdown