Description
A vulnerability was identified in Anil-matcha Open-Generative-AI up to 1.0.11/2.0.0. Affected by this issue is some unknown functionality of the file /api/upload-binary of the component S3 Upload. Such manipulation of the argument x-proxy-target-url leads to unrestricted upload. The attack may be launched remotely. The name of the patch is f013270957f75e439eaf97eb2a93decb32a4543e. Applying a patch is advised to resolve this issue.
Published: 2026-09-13
Score: 6.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Unrestricted File Upload
Action: Apply Patch
AI Analysis

Impact

A flaw in the /api/upload-binary endpoint of Anil‑matcha Open‑Generative‑AI allows an attacker to manipulate the x‑proxy‑target‑url header, causing the component to store an arbitrary file in the configured S3 bucket. The change creates any file type that can be uploaded, potentially breaching data confidentiality and integrity. The description states the attack may be launched remotely; it does not specify an authentication requirement or whether the uploaded content can be executed, so the precise impact on execution is uncertain.

Affected Systems

Versions of Anil‑matcha Open‑Generative‑AI up to and including 1.0.11 and 2.0.0 are affected. Any deployment that exposes the default /api/upload-binary endpoint without restrictions is therefore vulnerable.

Risk and Exploitability

The CVSS score of 6.9 indicates moderate severity, while the EPSS score of less than 1% suggests a low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog. Based on the description, the likely attack vector is remote, requiring only crafted HTTP requests that alter the x‑proxy‑target‑url header. The potential consequences include unchecked storage of arbitrary files in an S3 bucket, which could lead to data exposure or manipulation of downstream processing.

Generated by OpenCVE AI on September 15, 2026 at 17:07 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the official patch identified by commit f013270957f75e439eaf97eb2a93decb32a4543e to update the upload handling code
  • Restrict access to the /api/upload-binary endpoint so that only authorized users can reach it
  • Implement server‑side validation that checks MIME type, file extension, and size limits before storing uploads in S3

Generated by OpenCVE AI on September 15, 2026 at 17:07 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 16 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sun, 13 Sep 2026 23:15:00 +0000

Type Values Removed Values Added
Description A vulnerability was identified in Anil-matcha Open-Generative-AI up to 1.0.11/2.0.0. Affected by this issue is some unknown functionality of the file /api/upload-binary of the component S3 Upload. Such manipulation of the argument x-proxy-target-url leads to unrestricted upload. The attack may be launched remotely. The name of the patch is f013270957f75e439eaf97eb2a93decb32a4543e. Applying a patch is advised to resolve this issue.
Title Anil-matcha Open-Generative-AI S3 Upload upload-binary unrestricted upload
First Time appeared Anil-matcha
Anil-matcha open-generative-ai
Weaknesses CWE-284
CWE-434
CPEs cpe:2.3:a:anil-matcha:open-generative-ai:*:*:*:*:*:*:*:*
Vendors & Products Anil-matcha
Anil-matcha open-generative-ai
References
Metrics cvssV2_0

{'score': 7.5, 'vector': 'AV:N/AC:L/Au:N/C:P/I:P/A:P/E:ND/RL:OF/RC:C'}

cvssV3_0

{'score': 7.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:X/RL:O/RC:C'}

cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:X/RL:O/RC:C'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X'}


Subscriptions

Anil-matcha Open-generative-ai
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-16T14:20:58.284Z

Reserved: 2026-09-12T19:22:13.197Z

Link: CVE-2026-90603

cve-icon Vulnrichment

Updated: 2026-09-16T14:20:54.480Z

cve-icon NVD

Status : Deferred

Published: 2026-09-13T23:16:28.703

Modified: 2026-09-16T15:18:33.417

Link: CVE-2026-90603

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-17T19:47:25Z

Weaknesses
  • CWE-284

    Improper Access Control

  • CWE-434

    Unrestricted Upload of File with Dangerous Type