Impact
A flaw in poco‑ai poco‑claw’s Workspace API allows manipulation of the user_id argument in the get_workspace_file endpoint to bypass authorization checks, granting an attacker unauthorized read access to files belonging to other users. The vulnerability can lead to confidentiality compromise without the need for elevated privileges or local access.
Affected Systems
This vulnerability impacts poco‑ai poco‑claw versions up to and including 0.5.4. The affected function is get_workspace_file within the Workspace API component.
Risk and Exploitability
6.9 classifies it as medium severity. The EPSS score is < 1%, indicating a very low but non‑zero exploitation probability. An exploit has been publicly demonstrated and may be used. Attack can be launched remotely through the exposed API by supplying an arbitrary user_id, and does not require additional credentials. The vulnerability is not listed in the CISA KEV catalog, but the prior public release suggests a high potential for abuse.
OpenCVE Enrichment