๐Ÿ” CVE Alert

CVE-2026-13483

LOW 3.1

arc53 DocsGPT Credential Storage encryption.py encrypt_credentials data authenticity

CVSS Score
3.1
EPSS Score
0.0%
EPSS Percentile
0th

A flaw has been found in arc53 DocsGPT up to 0.18.0. The affected element is the function encrypt_credentials of the file application/security/encryption.py of the component Credential Storage. This manipulation causes insufficient verification of data authenticity. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is described as difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance.

CWE CWE-345
Vendor arc53
Product docsgpt
Published Jun 28, 2026
Stay Ahead of the Next One

Get instant alerts for arc53 docsgpt

Be the first to know when new low vulnerabilities affecting arc53 docsgpt are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N/E:P/RL:X/RC:R
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

arc53 / DocsGPT
0.1 0.2 0.3 0.4 0.5 0.6 0.7 0.8 0.9 0.10 0.11 0.12 0.13 0.14 0.15 0.16 0.17 0.18.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
vuldb.com: https://vuldb.com/vuln/374480 vuldb.com: https://vuldb.com/vuln/374480/cti vuldb.com: https://vuldb.com/cve/CVE-2026-13483 vuldb.com: https://vuldb.com/submit/837646 github.com: https://github.com/arc53/DocsGPT/issues/2503 github.com: https://github.com/arc53/DocsGPT/pull/2331 github.com: https://github.com/arc53/DocsGPT/

Credits

๐Ÿ” Dem00 (VulDB User) VulDB CNA Team