Impact
An exposed administrative configuration endpoint in fast‑note‑sync‑service versions up to 2.13.7 allows a remote attacker to retrieve the authTokenKey. With this key, the attacker can impersonate an administrator, granting them full control over the affected system. The weakness manifests as improper access control, allowing credentials that should be restricted to privileged users to be read by anyone with network access to the service.
Affected Systems
The vulnerability is present in any installation of fast‑note‑sync‑service version 2.13.7 or older. Because no vendor name is listed, any organization running the affected open‑source product should consider this finding.
Risk and Exploitability
The CVSS score is 9.8 and the EPSS score is less than 1%, but the exploitation requires only network access to the exposed endpoint, making it trivially reachable from the internet. The lack of a CISA KEV listing indicates it has not yet been observed in the wild, yet the potential for privilege escalation warrants immediate attention. Attackers could simply craft a request to the admin endpoint and capture the token if the system is not protected by network controls.
OpenCVE Enrichment