PT-2026-55292 · Lobe Chat · Lobe Chat

·

CVE-2026-58580

·

Published

2026-07-02

·

Updated

2026-07-02

CVSS v4.0

6.0

Medium

VectorAV:N/AC:H/AT:N/PR:L/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions LobeChat versions prior to 2.3.0
Description Server-database deployments contain a broken object-level authorization issue within the MessageModel. The methods updateMessagePlugin(), updatePluginState(), updatePluginError(), updateTTS(), and updateTranslate() filter target rows using only the message identifier, failing to apply the userId scope used by other methods. Additionally, the findMessagePlugin() method reads data based solely on the identifier. This is reachable via tRPC message procedures, allowing an authenticated user with knowledge of another user's non-enumerable message identifier to overwrite that user's plugin tool-call metadata, plugin state, plugin errors, text-to-speech, and translation records. The modified content is then served back to the victim.
Recommendations Update to version 2.3.0 or later.

Exploit

Fix

IDOR

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-58580

Affected Products

Lobe Chat