๐Ÿ” CVE Alert

CVE-2026-108863

HIGH 7.5

Katanemo Plano through 0.4.37 Missing Authentication on Envoy Admin Interface

CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th

Katanemo Plano through 0.4.37 contains a missing authentication vulnerability that allows unauthenticated network attackers to access the Envoy admin interface, which is bound to all host interfaces on port 9901. Attackers can request the /config_dump endpoint to read configured LLM provider API keys in plaintext from the WASM filter configuration.

CWE CWE-306
Vendor katanemo
Product plano
Published Oct 11, 2026
Stay Ahead of the Next One

Get instant alerts for katanemo plano

Be the first to know when new high vulnerabilities affecting katanemo plano are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None

Affected Versions

Katanemo / Plano
0 โ‰ค 0.4.37

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
hackmd.io: https://hackmd.io/@1ExmmukzRMWN7B4gQ4W-4Q/katanemo-plano-envoy-admin-config-secret-disclosure github.com: https://github.com/katanemo/plano/blob/0.4.37/config/envoy.template.yaml#L1-L3 github.com: https://github.com/katanemo/plano/blob/0.4.37/cli/planoai/config_generator.py#L588-L656 github.com: https://github.com/katanemo/plano vulncheck.com: https://www.vulncheck.com/advisories/katanemo-plano-through-0.4.37-missing-authentication-on-envoy-admin-interface

Credits

hieuPenguinnn