CVE-2026-59098
MEDIUMLobeChat 2.2.9 - Cross-User Document Disclosure via Unscoped RAG Semantic Search
Title source: cnaDescription
LobeChat through 2.2.9 contains a broken access control vulnerability in the retrieval-augmented-generation semantic search functionality that allows authenticated attackers to access other users' data by exploiting missing user-identifier predicates in the chunk model semanticSearch method. Attackers can supply arbitrary victim file or knowledge-base identifiers through the chunk retrieval and chat knowledge-base paths to retrieve text content, file names, and metadata belonging to other users.
References (4)
Core 4
Core References
Exploit technical-description
exploit
Researcher Disclosure
https://github.com/lobehub/lobehub/issues/16535
Patch patch
Fix Commit
https://github.com/lobehub/lobehub/commit/4a7931a4e66832947dba11afdffae2918a56b6a0
Third Party Advisory third-party-advisory
https://www.vulncheck.com/advisories/lobechat-cross-user-document-disclosure-via-unscoped-rag-semantic-search
Scores
CVSS v3
6.5
EPSS
0.0024
EPSS Percentile
15.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
no
Technical Impact
partial
Details
CWE
CWE-639
Status
published
Products (1)
lobehub/lobehub
< 2.2.9
Published
Jul 02, 2026
Tracked Since
Jul 03, 2026