Arc53

Docsgpt

2 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.1%
  • Veröffentlicht 28.06.2026 05:45:08
  • Zuletzt bearbeitet 29.06.2026 18:43:23

A flaw has been found in arc53 DocsGPT up to 0.18.0. The affected element is the function encrypt_credentials of the file application/security/encryption.py of the component Credential Storage. This manipulation causes insufficient verification of da...

Exploit
  • EPSS 1.17%
  • Veröffentlicht 29.04.2026 17:37:25
  • Zuletzt bearbeitet 06.05.2026 20:16:31

DocsGPT is a GPT-powered chat for documentation. From version 0.15.0 to before version 0.16.0, an attacker accessing both the official DocsGPT website or any local and public deployment, can craft a malicious payload bypassing the "MCP test" behavior...