Description
OpenTelemetry, also known as OTel, is a vendor-neutral open source Observability framework for instrumenting, generating, collecting, and exporting telemetry data such as traces, metrics, and logs. Prior to 0.154.0, the Sentry exporter reads the remote OTLP sender-controlled service.name resource attribute in exporter/sentryexporter/sentry_exporter.go through extractProjectSlug and getOrCreateProjectEndpoint, passes the raw project slug to GetOTLPEndpoints and GetProjectKeys in exporter/sentryexporter/sentry_client.go, and interpolates it into a Sentry API URL without applying projectSlugRegexp through validateRoutingConfig at runtime in exporter/sentryexporter/config.go. Special characters can turn the expected path suffix into query data in all deployments or introduce slash and dot segments that traverse paths when the Sentry deployment normalizes them, while the Collector attaches its operator-configured bearer token to the request. A successful request can reach token-authorized administrative, organization, member, or key endpoints within the configured Sentry organization, and an attacker-controlled project slug can redirect subsequently exported telemetry. Sentry token middleware prevents cross-organization access. This issue is fixed in version 0.154.0.
Published: 2026-09-14
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Unauthorized privileged access to Sentry API endpoints via path traversal
Action: Immediate Patch
AI Analysis

Impact

The Sentry exporter in OpenTelemetry Collector Contrib processes the OTLP sender‑controlled service.name resource attribute. Before validating, the exporter extracts the project slug and passes the raw slug to the client layer, where it is interpolated into a Sentry API URL. Because the exporter does not apply its runtime validation regex, special characters in the slug can transform the expected path suffix into query data or introduce slash and dot segments that traverse directories when the Sentry deployment normalises them. The Collector then uses its operator‑configured bearer token to issue the request. A malformed service.name lets an attacker direct the exporter to authentication‑protected administrative, organization, member, or key endpoints inside the configured Sentry organisation, redirecting subsequently exported telemetry.

Affected Systems

All OpenTelemetry Collector Contrib releases prior to v0.154.0 that include the Sentry exporter are vulnerable. The issue is fixed starting with release v0.154.0, which adds runtime validation of the project slug derived from service.name. The affected repository is open‑telemetry/opentelemetry‑collector‑contrib, specifically the exporter module at exporter/sentryexporter.

Risk and Exploitability

With a CVSS score of 5.3 the vulnerability poses a moderate risk. The EPSS score is less than 1%, indicating a very low probability of exploitation. The vulnerability is not listed in CISA KEV, indicating no public exploitation reports yet. Exploitation requires an attacker to inject telemetry into a collector that has the Sentry exporter enabled; once that occurs, the operator bearer token can be leveraged to access privileged API endpoints, including administrative and organization configuration endpoints. The potential impact includes full access to all data and administrative functions within the Sentry organization, although cross‑organization reach is limited by Sentry’s own token middleware.

Generated by OpenCVE AI on September 21, 2026 at 00:02 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade the OpenTelemetry Collector Contrib product to v0.154.0 or later, which validates the project slug before URL construction.
  • Validate or sanitize the service.name attribute to contain only allowed characters, or reject telemetry originating from untrusted sources.
  • Monitor collector logs for unexpected Sentry API requests and verify that no privileged endpoints are being accessed without authorisation.
  • If the Sentry exporter is not required, disable or remove it from the collector configuration to eliminate the attack surface.

Generated by OpenCVE AI on September 21, 2026 at 00:02 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Github GHSA Github GHSA GHSA-4jvg-4jfx-fmhc opentelemetry-collector-contrib sentryexporter: Path traversal in Sentry exporter via attacker-controlled service.name reaches privileged Sentry API endpoints with operator bearer token
History

Thu, 17 Sep 2026 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Opentelemetry
Opentelemetry opentelemetry Collector Contrib
Vendors & Products Opentelemetry
Opentelemetry opentelemetry Collector Contrib

Tue, 15 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

threat_severity

Moderate


Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description OpenTelemetry, also known as OTel, is a vendor-neutral open source Observability framework for instrumenting, generating, collecting, and exporting telemetry data such as traces, metrics, and logs. Prior to 0.154.0, the Sentry exporter reads the remote OTLP sender-controlled service.name resource attribute in exporter/sentryexporter/sentry_exporter.go through extractProjectSlug and getOrCreateProjectEndpoint, passes the raw project slug to GetOTLPEndpoints and GetProjectKeys in exporter/sentryexporter/sentry_client.go, and interpolates it into a Sentry API URL without applying projectSlugRegexp through validateRoutingConfig at runtime in exporter/sentryexporter/config.go. Special characters can turn the expected path suffix into query data in all deployments or introduce slash and dot segments that traverse paths when the Sentry deployment normalizes them, while the Collector attaches its operator-configured bearer token to the request. A successful request can reach token-authorized administrative, organization, member, or key endpoints within the configured Sentry organization, and an attacker-controlled project slug can redirect subsequently exported telemetry. Sentry token middleware prevents cross-organization access. This issue is fixed in version 0.154.0.
Title OpenTelemetry: Path traversal in Sentry exporter via attacker-controlled service.name reaches privileged Sentry API endpoints with operator bearer token
Weaknesses CWE-22
CWE-74
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Opentelemetry Opentelemetry Collector Contrib
cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-09-14T18:00:10.105Z

Reserved: 2026-05-18T23:03:37.228Z

Link: CVE-2026-47256

cve-icon Vulnrichment

Updated: 2026-09-14T18:00:04.800Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-14T18:17:48.250

Modified: 2026-09-25T14:23:59.847

Link: CVE-2026-47256

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-09-14T17:28:15Z

Links: CVE-2026-47256 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T00:15:06Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

  • CWE-74

    Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')