CWE-668Class

Exposure of Resource to Wrong Sphere

Draft in the CWE catalog · 200 CVEs mapped

200
CVEs mapped
6.8
Median CVSS
What it is

The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.

Recent examples
8.8cvss
CVE-2026-85053

CVE-2026-85053 - HIGH Severity Vulnerability

Improper resource exposure in CacheStorage in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)

HIGHno explanation yet
0%
epss
5.3cvss
CVE-2026-82652

CVE-2026-82652 - MEDIUM Severity Vulnerability

SiYuan before v3.8.1 fails to filter invisible-tier content from SQL embed blocks, attribute-view keys, and attribute-view backlinks in publish mode. Anonymous readers can enumerate invisible content through these three listing mechanisms despite admin configuration marking content unlisted.

MEDIUMno explanation yet
0%
epss
4.4cvss
CVE-2026-82650

CVE-2026-82650 - MEDIUM Severity Vulnerability

SiYuan 3.8.0 contains a path traversal / sensitive file exposure vulnerability in the RenderTemplate function (kernel/model/template.go), reachable via the POST /api/template/render endpoint (kernel/api/template.go). The endpoint restricts the supplied path only to the workspace directory (util.IsAbsPathInWorkspace) but, unlike the file API's refuseToAccess() blocklist, applies no sensitive-path exclusion. This allows an authenticated attacker to read sensitive workspace files, including conf/conf.json, which contains the API token and cookie signing key. The issue is fixed in v3.8.1.

MEDIUMno explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-668
Abstraction
Class
Structure
Simple
Status
Draft
References (1)