Description
A security flaw has been discovered in REBUILD up to 4.4.11. This vulnerability affects unknown code of the file /commons/file-editor-save. The manipulation of the argument url/fileKey results in missing authorization. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Published: 2026-09-29
Score: 6.9 Medium
EPSS: n/a
KEV: No
Impact: Remote Authorization Bypass
Action: Patch Immediately
AI Analysis

Impact

REBUILD is vulnerable to an authorization bypass in the file-editor-save endpoint. By manipulating the url/fileKey argument, an attacker can skip necessary permission checks and save data without proper authorization. This flaw allows unauthorized users to modify or create files remotely, potentially leading to data tampering and exposure of sensitive content. The weakness is classified under CWE-862 and CWE-863.

Affected Systems

The affected product is REBUILD, with any version up to 4.4.11 susceptible to this flaw. The vulnerability resides in the /commons/file-editor-save code path, and the vendor has not released a patch or response. Users should verify whether their deployment uses a version beyond 4.4.11 before assessing impact.

Risk and Exploitability

The CVSS score of 6.9 indicates a medium to high severity level, and the lack of an EPSS rating suggests no consensus on the exploitation probability, but the flaw is publicly disclosed and can be triggered remotely. The absence from the KEV catalog means no known large‑scale attacks have been reported yet, but the missing authorization remains a clear entry point for potential abuse. If unmitigated, an attacker can remotely gain unauthorized write access to files through the affected endpoint.

Generated by OpenCVE AI on September 29, 2026 at 05:22 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade REBUILD to a version later than 4.4.11 or apply any vendor-supplied patch that addresses the authorization check for the file-editor-save endpoint.
  • Restrict external access to the /commons/file-editor-save path by configuring firewall or API‑gateway rules that limit calls to trusted IP ranges or authenticated services.
  • Integrate explicit authorization logic that verifies user roles or permissions before accepting the url/fileKey parameter, ensuring that only privileged users can perform file write operations.

Generated by OpenCVE AI on September 29, 2026 at 05:22 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 29 Sep 2026 04:00:00 +0000

Type Values Removed Values Added
Description A security flaw has been discovered in REBUILD up to 4.4.11. This vulnerability affects unknown code of the file /commons/file-editor-save. The manipulation of the argument url/fileKey results in missing authorization. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Title REBUILD file-editor-save authorization
First Time appeared Rebuild
Rebuild rebuild
Weaknesses CWE-862
CWE-863
CPEs cpe:2.3:a:rebuild:rebuild:*:*:*:*:*:*:*:*
Vendors & Products Rebuild
Rebuild rebuild
References
Metrics cvssV2_0

{'score': 7.5, 'vector': 'AV:N/AC:L/Au:N/C:P/I:P/A:P/E:POC/RL:ND/RC:C'}

cvssV3_0

{'score': 7.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:C'}

cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:C'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-29T03:45:12.603Z

Reserved: 2026-09-28T19:04:36.570Z

Link: CVE-2026-102249

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-29T04:17:54.917

Modified: 2026-09-29T04:17:54.917

Link: CVE-2026-102249

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-29T05:30:12Z

Weaknesses