Advisory Database
  • Advisories
  • Dependency Scanning
  1. pypi
  2. ›
  3. openharness-ai
  4. ›
  5. CVE-2026-56695

CVE-2026-56695: OpenHarness remote resume commands expose other users' saved session snapshots

June 23, 2026 (updated September 4, 2026)

OpenHarness ohmo gateway /resume and /summary slash commands default remote_invocable to True, allowing admitted remote senders to enumerate and load arbitrary session snapshots by ID. Attackers can exploit this to access victim snapshots containing private prompts, credentials, tool output, and file paths via shared gateway channels.

References

  • github.com/HKUDS/OpenHarness/commit/92e298852c9b9c8c2266236292073623418c640a
  • github.com/HKUDS/OpenHarness/pull/276
  • github.com/advisories/GHSA-399c-3gm2-p29v
  • nvd.nist.gov/vuln/detail/CVE-2026-56695
  • www.vulncheck.com/advisories/openharness-cross-session-disclosure-via-resume-and-summary-commands

Code Behaviors & Features

Detect and mitigate CVE-2026-56695 with GitLab Dependency Scanning

Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →

Affected versions

All versions up to 0.1.9

Solution

Unfortunately, there is no solution available yet.

Impact 6.5 MEDIUM

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Learn more about CVSS

Weakness

  • CWE-862: Missing Authorization

Source file

pypi/openharness-ai/CVE-2026-56695.yml

Spotted a mistake? Edit the file on GitLab.

  • Site Repo
  • About GitLab
  • Terms
  • Privacy Statement
  • Contact

Page generated Tue, 22 Sep 2026 12:21:24 +0000.