Description
Plane is an open-source project management tool. Prior to 1.4.0, Plane's OAuth avatar synchronization flow fetches avatar_url from provider user data through a server-side HTTP request without internal IP validation and follows redirects by default. An attacker can provide an avatar URL that redirects to an internal-only resource, such as a metadata endpoint, and Plane uploads the fetched response as a user avatar file. The object is then exposed through /api/assets/v2/static/{asset_id}/, allowing exfiltration of internally fetched content. This issue is fixed in 1.4.0.
Published: 2026-10-05
Score: 7.6 High
EPSS: n/a
KEV: No
Impact: Remote Server‑Side Request Forgery enabling internal data exfiltration
Action: Immediate Patch
AI Analysis

Impact

The vulnerability allows a Server‑Side Request Forgery in Plane’s OAuth avatar synchronization flow, where the platform fetches an avatar URL supplied by the OAuth provider without validating that the URL points to an external host. Apache Core permits follows redirects by default, so an attacker can craft a URL that redirects to an internal resource, such as a metadata endpoint. The server then stores the response as a user avatar, and the asset is publicly reachable through "/api/assets/v2/static/{asset_id}/", providing a mechanism to exfiltrate data that should remain internal. The primary impact is internal data exfiltration and potential disclosure of sensitive information.

Affected Systems

All releases of makeplane:plane earlier than version 1.4.0 are affected. The flaw exists in the OAuth avatar synchronization feature, which is enabled by default in these versions, and it can be triggered by any user account whose OAuth provider supplies a malicious avatar_url.

Risk and Exploitability

The CVSS score of 7.6 indicates a high severity vulnerability. The EPSS value is not available, and the issue is not in the CISA KEV catalog. Based on the description, the attacker must influence the avatar_url returned during the OAuth authentication process; this can be achieved by controlling the OAuth provider or compromising a user account that authorizes the application. Once the server follows the redirect to an internal resource, the data is captured and stored, making the exploit straightforward for an attacker with network access to the server. The risk is elevated for installations with unrestricted outbound connectivity to internal networks.

Generated by OpenCVE AI on October 5, 2026 at 20:13 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade makeplane:plane to version 1.4.0 or later, which removes the unsafe redirect logic and validates the fetched image URL.
  • If an upgrade cannot be performed immediately, reconfigure the application to disable automatic OAuth avatar fetching or configure the redirect following behavior to disallow redirects to internal addresses.
  • Implement network controls such as firewall or proxy rules that prevent the Plane server from reaching internal IP ranges or reserved network blocks, thereby mitigating SSRF exploitation across all external-facing services.

Generated by OpenCVE AI on October 5, 2026 at 20:13 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 05 Oct 2026 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Makeplane
Makeplane plane
Vendors & Products Makeplane
Makeplane plane

Mon, 05 Oct 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 05 Oct 2026 18:00:00 +0000

Type Values Removed Values Added
Description Plane is an open-source project management tool. Prior to 1.4.0, Plane's OAuth avatar synchronization flow fetches avatar_url from provider user data through a server-side HTTP request without internal IP validation and follows redirects by default. An attacker can provide an avatar URL that redirects to an internal-only resource, such as a metadata endpoint, and Plane uploads the fetched response as a user avatar file. The object is then exposed through /api/assets/v2/static/{asset_id}/, allowing exfiltration of internally fetched content. This issue is fixed in 1.4.0.
Title Plane: OAuth Avatar Redirect SSRF Leads to Internal Data Exfiltration via Static Asset Endpoint
Weaknesses CWE-918
References
Metrics cvssV3_1

{'score': 7.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-10-05T17:57:41.515Z

Reserved: 2026-10-05T16:40:39.610Z

Link: CVE-2026-105628

cve-icon Vulnrichment

Updated: 2026-10-05T17:57:25.396Z

cve-icon NVD

Status : Deferred

Published: 2026-10-05T18:17:35.917

Modified: 2026-10-05T18:17:36.050

Link: CVE-2026-105628

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-05T20:15:16Z

Weaknesses
  • CWE-918

    Server-Side Request Forgery (SSRF)