Database/Control plane, storage & DevOps
Atlantis: workspace names escape the working directory into os.RemoveAll and os.MkdirAll
Impact
Anyone who can land an atlantis.yaml on a watched branch, or call the authenticated /api/plan endpoint, can supply a workspace name containing traversal segments. Atlantis joins it into a local path and calls os.RemoveAll, os.MkdirAll or similar with the privileges of the Atlantis process before Terraform ever rejects the name. Atlantis hosts usually hold the cloud and cluster credentials that build and resize GPU fleets, so the damage is directories created, deleted or reused on that host: state caches, provider plugin dirs, credential material, plus denial of service for every apply queued behind it. The advisory claims integrity and availability impact only, no direct confidentiality loss. Affected from 0.19.8 up to 0.45.0.
Who can reach it
A user who can commit a repository-level atlantis.yaml to a repo Atlantis watches, or an authenticated caller of /api/plan. Authentication or repo write access required; network reachable.
What to do
Upgrade Atlantis to 0.45.0 and restart the server. Single-service restart, in-flight plans are lost, no node or cluster maintenance needed. If you cannot upgrade immediately, restrict who can add repo-level atlantis.yaml config and who holds /api/plan tokens.
References
Related entries
- Dell PowerStore T SDNAS: unauthenticated NFS/RPC buffer overflow allows command execution on the arrayCVE-2026-70415 · Dell PowerStore T SDNAS (NFS/RPC service)High
- Jenkins: inconsistent case handling in user and group names allows impersonation of other accountsCVE-2026-70429 · Jenkins core (user and group name case-sensitivity handling)High
- Apache Airflow FAB provider: Authentik OAuth path does not check id_token issuer or audienceCVE-2026-86466 · Apache Airflow FAB provider (Authentik OAuth id_token validation)High
- Ansible community.general: memcached fact cache unpickles values, giving code execution on the controllerCVE-2026-87874 · Ansible community.general collection (memcached fact cache plugin)High
- GlusterFS (glusterd, auth.allow): The auth.allow option does not actually restrict who may connect, so anyCVE-2018-1112 · GlusterFS (glusterd, auth.allow)High
- Altair PBS Professional / OpenPBS (pbs_mom): Pbs_mom, the daemon that executes jobs on every compute node, acceptsCVE-2019-15719 · Altair PBS Professional / OpenPBS (pbs_mom)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.