PT-2026-23658 · Windmill · Windmill
Chocapikk
·
Published
2026-03-06
·
Updated
2026-04-07
·
CVE-2026-29059
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Windmill versions prior to 1.603.3
Description
Windmill is an open-source developer platform for internal code, including APIs, background jobs, workflows, and UIs. A path traversal vulnerability exists in the
get log file endpoint ('/api/w/{workspace}/jobs u/get log file/{filename}') prior to version 1.603.3. The filename parameter is improperly concatenated into a file path without sufficient sanitization, potentially allowing an attacker to read arbitrary files on the server using '..' sequences. This could lead to the exposure of sensitive information, including the SUPERADMIN SECRET in some cases. Exploitation requires no authentication.Recommendations
Update Windmill to version 1.603.3 or later.
Exploit
Fix
RCE
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windmill