CVE-2026-53556
Gravedad CVSS v4.0:
MEDIA
Tipo:
CWE-89
Neutralización incorrecta de elementos especiales usados en un comando SQL (Inyección SQL)
Fecha de publicación:
17/09/2026
Última modificación:
23/09/2026
Descripción
*** Pendiente de traducción *** SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, the POST /api/v1/datasource/previewData endpoint in backend/apps/datasource/crud/datasource.py incorporates the client-controlled table_name value into generated SQL without safe identifier handling. An authenticated user can configure a datasource for SQLBot's internal PostgreSQL service and submit a crafted table_name that remains a SELECT operation under the read-only policy while invoking pg_read_file(), pg_read_binary_file(), or pg_ls_dir(). In the default tested trusted loopback authentication configuration, the internal connection accepts invalid credentials and executes with PostgreSQL superuser privileges, allowing filesystem content such as /etc/hosts and /etc/passwd to be returned in the previewData API response and potentially exposing configuration, credentials, authentication secrets, and source code. This issue is fixed in version 1.9.0.
Impacto
Puntuación base 4.0
6.00
Gravedad 4.0
MEDIA
Referencias a soluciones, herramientas e información
- https://github.com/dataease/SQLBot/commit/76b5176b0e394740fd07c0d1769c0c792e8cb3b4
- https://github.com/dataease/SQLBot/pull/1156
- https://github.com/dataease/SQLBot/releases/tag/v1.9.0
- https://github.com/dataease/SQLBot/security/advisories/GHSA-vwjq-5h4h-x8g5
- https://github.com/dataease/SQLBot/security/advisories/GHSA-vwjq-5h4h-x8g5


