CVE-2026-44986
Penpot is an open-source design tool for design and code collaboration. Prior to 2.14.5, Penpot exposed teams_invitations.clj invitation tokens from create-team-invitations, embedded an existing profile id in auth.clj prepare-register-profile, and had auth.clj register-profile issue a session based on the invitation email match without password verification, allowing a registered user to take over any non-blocked profile. This issue is fixed in version 2.14.5.
Schwachstellenklasse
Penpot is an open-source design tool for design and code collaboration. Prior to 2.14.5, Penpot exposed teams_invitations.clj invitation tokens from create-team-invitations, embedded an existing profile id in auth.clj prepare-register-profile, and had auth.clj register-profile issue a session based on the invitation email match without password verification, allowing a registered user to take over any non-blocked profile. This issue is fixed in version 2.14.5.
Quellen
- https://github.com/penpot/penpot/commit/9e681260ccc4feb6c564ff0773fb9594b462c574
- https://github.com/penpot/penpot/pull/9380
- https://github.com/penpot/penpot/releases/tag/2.14.5
- https://github.com/penpot/penpot/security/advisories/GHSA-4937-35vc-hqjj
- https://github.com/penpot/penpot/security/advisories/GHSA-4937-35vc-hqjj
Finden Sie die Schwachstelle, bevor es ein Angreifer tut.
Melden Sie sich mit GitHub an und starten Sie Ihr erstes Audit in weniger als einer Minute. Für den kostenlosen Plan ist keine Kreditkarte nötig.