CyberRota Analysis
AI-GeneratedChatwoot versions prior to 4.16.0 are vulnerable to an authentication bypass in the direct uploads controller, enabling unauthenticated attackers to create arbitrary ActiveStorage blobs across any tenant account. This vulnerability allows attackers to exploit missing authentication checks to access any account and conversation, potentially leading to unauthorized data manipulation in the application's storage backend. Organizations using Chatwoot should prioritize patching this vulnerability to safeguard against unauthorized data access and integrity issues.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Chatwoot before 4.16.0 contains an authentication bypass vulnerability in the direct uploads controller that allows unauthenticated attackers to create arbitrary ActiveStorage blobs in any tenant account. Attackers can exploit missing authentication checks to resolve any account and conversation, then obtain signed PUT URLs to write arbitrary data to the application's storage backend.