Impact
An information disclosure flaw in Windmill Labs Windmill allows any authenticated workspace member to view legacy ownerless draft scripts that contain plaintext resource credentials. Because drafts with a null owner email bypass access control, these secrets are returned to anyone who queries the drafts endpoint, exposing sensitive data across ACL boundaries.
Affected Systems
Windmill Labs Windmill versions up to and including 1.783.0 are vulnerable. All releases prior to 1.783.0 also lack the fix and are potentially affected.
Risk and Exploitability
The vulnerability carries a CVSS score of 6.5, indicating a medium severity. An attacker only needs authenticated access within a workspace to exploit the flaw, and no special privileges are required. The issue is not listed in the CISA KEV catalog, suggesting a moderate likelihood of exploitation but still warrants prompt remediation.
OpenCVE Enrichment