CVE-2026-13483
arc53 DocsGPT Credential Storage encryption.py encrypt_credentials data authenticity
CVSS Score
3.1
EPSS Score
0.0%
EPSS Percentile
0th
A flaw has been found in arc53 DocsGPT up to 0.18.0. The affected element is the function encrypt_credentials of the file application/security/encryption.py of the component Credential Storage. This manipulation causes insufficient verification of data authenticity. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is described as difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance.
| CWE | CWE-345 |
| Vendor | arc53 |
| Product | docsgpt |
| Published | Jun 28, 2026 |
Stay Ahead of the Next One
Get instant alerts for arc53 docsgpt
Be the first to know when new low vulnerabilities affecting arc53 docsgpt are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N/E:P/RL:X/RC:R Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Affected Versions
arc53 / DocsGPT
0.1 0.2 0.3 0.4 0.5 0.6 0.7 0.8 0.9 0.10 0.11 0.12 0.13 0.14 0.15 0.16 0.17 0.18.0
References
vuldb.com: https://vuldb.com/vuln/374480 vuldb.com: https://vuldb.com/vuln/374480/cti vuldb.com: https://vuldb.com/cve/CVE-2026-13483 vuldb.com: https://vuldb.com/submit/837646 github.com: https://github.com/arc53/DocsGPT/issues/2503 github.com: https://github.com/arc53/DocsGPT/pull/2331 github.com: https://github.com/arc53/DocsGPT/
Credits
๐ Dem00 (VulDB User) VulDB CNA Team