Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Mdavis

Pesquisador detffhrtporg
#47804de 53,635
5.3CVSS total
Vulnerabilidades · 1
PT-2026-23642
5.3
2026-03-06
Openshift · Openshift · CVE-2026-28675
**Name of the Vulnerable Software and Affected Versions** OpenSift versions prior to 1.6.3-alpha **Description** OpenSift is an AI study tool that uses semantic search and generative AI to analyze large datasets. Prior to version 1.6.3-alpha, certain API endpoints returned raw exception strings to clients, potentially exposing sensitive implementation details. Additionally, login token material was exposed in the user interface and token rotation output. The vulnerable endpoints include those that handle exceptions and token management. The exposed token material includes information related to user authentication. The `token` is exposed in UI responses and token rotation output. **Recommendations** Update to version 1.6.3-alpha or later.