CyberRota Analysis
AI-GeneratedToolJet versions prior to 3.16.208 are vulnerable due to insufficient validation of user organization affiliations, enabling authenticated Builder users to access, modify, and delete data across different tenant boundaries. This critical flaw allows attackers to exploit public app endpoints to extract organization IDs and manipulate database schemas, potentially leading to data disclosure, corruption, or destruction. Organizations using ToolJet should prioritize immediate updates to mitigate this severe risk to their data integrity and security.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
ToolJet before v3.16.208 fails to validate that authenticated users belong to the organization specified in the organizationId path parameter of tooljet-db endpoints, allowing any Builder user to read, modify, and delete tables across tenant boundaries. Attackers can extract victim organization IDs from public app endpoints, then exploit schema operation endpoints to disclose table schemas, plant malicious tables, corrupt existing schemas, or permanently destroy victim data without any relationship to the target organization.