PT-2026-55292 · Lobe Chat · Lobe Chat
CVSS v4.0
6.0
Medium
| Vector | AV:N/AC:H/AT:N/PR:L/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
LobeChat versions prior to 2.3.0
Description
Server-database deployments contain a broken object-level authorization issue within the MessageModel. The methods
updateMessagePlugin(), updatePluginState(), updatePluginError(), updateTTS(), and updateTranslate() filter target rows using only the message identifier, failing to apply the userId scope used by other methods. Additionally, the findMessagePlugin() method reads data based solely on the identifier. This is reachable via tRPC message procedures, allowing an authenticated user with knowledge of another user's non-enumerable message identifier to overwrite that user's plugin tool-call metadata, plugin state, plugin errors, text-to-speech, and translation records. The modified content is then served back to the victim.Recommendations
Update to version 2.3.0 or later.
Exploit
Fix
IDOR
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Lobe Chat