CVE-2026-92787
KritikTeknik Veri (Otomatik)
- CVSS Skoru
- 9.8
- EPSS
- —
- CWE
- CWE-798
- KEV Durumu
- Hayır
Feast 0.66.0 sürümüne kadar, kullanıcı kimliğini belirlemeden önce JWT token imzalarını doğrulamayı başaramaz, bu da saldırganların önceden belirlenmiş bir talep değeriyle doğrulanmamış bir token sunarak tüm rol tabanlı erişim denetimini atlamasına olanak tanır. Saldırganlar, güvenilir dahili kimliği elde edebilir ve sunucudaki tüm varlıklara, özellik görünümlerine, veri kaynaklarına ve izin politikalarına kontrolsüz okuma ve yazma erişimi kazanabilir.
Orijinal açıklama (İngilizce)
Feast through 0.66.0 fails to verify JWT token signatures before establishing user identity, allowing attackers to bypass all role-based access control by presenting an unverified token with a hardcoded claim value. Attackers can obtain trusted internal identity and gain unchecked read and write access to all entities, feature views, data sources, and permission policies on the server.
Referanslar
- https://github.com/feast-dev/feast
- https://github.com/feast-dev/feast/blob/f296d4b/infra/charts/feast-feature-server/templates/deployment.yaml#L46-L47
- https://github.com/feast-dev/feast/blob/f296d4b/sdk/python/feast/permissions/auth/oidc_token_parser.py#L152-L156
- https://github.com/feast-dev/feast/blob/v0.66.0/sdk/python/feast/permissions/security_manager.py#L248-L264
- https://github.com/feast-dev/feast/issues/6785
- https://www.vulncheck.com/advisories/feast-through-0.66.0-authentication-bypass-via-unverified-token
Bu CVE için henüz editoryal inceleme yapılmadı. Sadece otomatik teknik veri gösteriliyor.
