PT-2026-6645 · Opencloud · Reva
Rhafer
·
Published
2026-02-05
·
Updated
2026-03-03
·
CVE-2026-23989
CVSS v3.1
8.2
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
REVA versions prior to 2.40.3
REVA versions prior to 2.42.3
Description
A flaw exists in the GRPC authorization middleware of the "Reva" component of OpenCloud. This allows a malicious user to bypass scope verification of a public link. By exploiting this through the "archiver" service, an attacker can create an archive (zip or tar-file) containing all resources accessible to the creator of the public link. The issue is not exploitable via WebDAV requests.
Recommendations
Update to REVA version 2.40.3 or later.
Update to REVA version 2.42.3 or later.
Exploit
Fix
Incorrect Authorization
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Reva