Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 04 Sep 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Bruno versions through 3.4.2 fail to validate file paths in request body declarations, allowing attackers to read arbitrary local files by using parent-directory traversal segments. When a collection is executed, attackers can craft a request with a body:file path containing ../ sequences that resolve outside the collection directory, causing the application to read and exfiltrate arbitrary files to attacker-controlled endpoints. | |
| Title | Bruno 3.4.2 Arbitrary File Read via Unconfined Body File Path | |
| First Time appeared |
Usebruno
Usebruno bruno |
|
| Weaknesses | CWE-22 | |
| CPEs | cpe:2.3:a:usebruno:bruno:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Usebruno
Usebruno bruno |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-04T18:41:49.271Z
Reserved: 2026-09-04T13:32:29.331Z
Link: CVE-2026-85665
No data.
Status : Received
Published: 2026-09-04T15:17:44.247
Modified: 2026-09-04T15:17:44.247
Link: CVE-2026-85665
No data.
OpenCVE Enrichment
Updated: 2026-09-04T16:00:05Z
