Impact
Coze Studio permits authenticated users to supply arbitrary URLs when registering plugin tools, and the backend fetches those URLs without validation. This flaw allows an attacker to trigger the server to request internal or cloud metadata endpoints and read the returned data. The potential impact is the disclosure of sensitive information such as internal service responses, configuration data, or credentials that are normally protected behind the internal network.
Affected Systems
The vulnerability exists in Coze Studio version 0.5.1 and earlier, developed by coze‑dev. The affected component is the plugin registration service that accepts external URLs.
Risk and Exploitability
The CVSS score of 7.1 classifies this as a high severity flaw. With an EPSS score below 1 %, the likelihood of immediate exploitation is low, and the vulnerability is not yet listed in the CISA Known Exploited Vulnerabilities catalog. Attackers must be authenticated to register a plugin, but once authenticated they can coerce the backend into accessing any internal endpoint reachable from the backend network. The primary risk is information disclosure; remote code execution is not supported by the available information.
OpenCVE Enrichment