Impact
Knowns fails to validate the path query parameter in the workspace browse endpoint, which allows a remote attacker to traverse the host filesystem and enumerate arbitrarily nested directories. This directory traversal flaw (CWE‑22) can reveal the locations of project folders, providing valuable information that could be used for subsequent attacks, thus constituting a confidentiality breach.
Affected Systems
Vulnerable installations of the knowns‑dev knowns server up to and including version 0.33.0 are affected. Clients running 0.33.0 flaw.
Risk and Exploitability
The CVSS score of 6.9 indicates moderate severity. With no EPSS data available and the vulnerability not listed in the CISA KEV catalog, the likelihood of widespread exploitation is uncertain, though the flaw can be triggered remotely via HTTP requests to the workspace browse endpoint. Based on the description, it is inferred that the endpoint is accessible over the network, so attackers can reach it without local privileges, but authentication requirements are not specified.
OpenCVE Enrichment