[CYBERDIGEST]
⊞ Dashboard ⚡ Intelligence 📝 Reports 📚 Global Threats 💻 Hack Lab 🗄️ Resources ⌬ 0xJerry's Lab
📡 RSS Feed
System Online

Tag

#Khoj

articleHIGH 8.7

Critical Unauthenticated Path Traversal Vulnerability in Khoj

A critical vulnerability (CVSS 8.7) exists in the Khoj application, allowing unauthenticated attackers to read arbitrary files from the server filesystem via the /home/ endpoint. This endpoint lacks path traversal filtering, path normalization checks, and authentication. Exploitation can lead to sensitive data exposure, including application configurations, system files, and potential facilitation of further attacks.

Sep 26, 20261 source