CVE-2026-23537Disclosure

LOWCVSS 9.1 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

A vulnerability has been identified in the Feast Feature Server’s `/save-document` endpoint that allows an unauthenticated remote attacker to write arbitrary JSON files to the server's filesystem. Although the system attempts to restrict file locations, these protections can be bypassed, enabling an attacker to overwrite vital application configurations or startup scripts. Because this flaw requires no credentials or special privileges, any attacker with network access to the server can potentially compromise the integrity of the system. This could lead to unauthorized system modifications, denial of service through disk exhaustion, or potential remote code execution.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-862

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • Peaked 1d ago at 3 mentions (2026-07-01); latest day: 1
  • 4 total mentions across 2 days

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-07-01: 3Mentions · 2026-07-09: 1PoC Mentioned / Linked · 2026-07-09: 1Patch / Workaround · 2026-07-01: 1Technical Details · 2026-07-01: 3Technical Details · 2026-07-09: 107-0107-09
Signal classification2 categories
Disclosure
375.0%
Patch
125.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-07-013
Disclosure2Patch1
2026-07-091
Disclosure1
Full discourse4 posts
  • Daily CyberSecurity@Daily_CyberSec
    Disclosure

    A critical Feast Feature Server flaw (CVE-2026-23537) lets unauthenticated attackers perform arbitrary file write and risk remote code execution. Act now. #Feast #FeatureStore #MachineLearning #ArbitraryFileWrite #RCE #CVE202623537 #CyberSecurity http://securityonline.info/feast-feature-server-file-write/

    Post summary

    The text announces a critical flaw in Feast Feature Server (CVE-2026-23537) that allows unauthenticated attackers to write arbitrary files and potentially execute code, urging immediate action.

    01010481
    12.5K followersView on X
  • ThreatAft@ThreatAft
    Disclosure

    🚨 CRITICAL: CVE-2026-23537 — Feast Feature Server CVSS 9.1. Unauthenticated path traversal → arbitrary file write → potential RCE via /save-document. Fixed version not yet confirmed. 🔗 https://threataft.com/articles/cve-2026-23537-feast-feature-server-arbitrary-file-write #CyberSecurity #ThreatIntel #infosec #Feast #ML

    Post summary

    The post announces a critical path traversal vulnerability in Feast Feature Server with a CVSS of 9.1, highlighting the risk but offering no PoC, exploit details, or patch information.

    0000169
    31 followersView on X
  • Orizon@OrizonCyber
    Patch

    🚨 CVE-2026-23537 — CVSS 9.1/10 █████████░ A vulnerability has been identified in the Feast Feature Server’s `/save-document` endpoint that allows an... Severity: CRITICAL Patch now. #cybersecurity #CVE https://t.co/BUc491GFR1

    Post summary

    The tweet announces a critical CVE in the Feast Feature Server, shares technical details, and urges immediate patching.

    1000063
    63 followersView on X
  • Upwind Security MDR@UpwindMDR
    Disclosure

    🚨 CRITICAL - Unauthenticated arbitrary file write via path bypass in Feast Feature Server (/save-document) (CVE-2026-23537) A critical vulnerability in Feast Feature Server’s /save-document endpoint allows unauthenticated attackers to write arbitrary JSON files to the server filesystem. The root cause is improper input validation leading to a path restriction bypass (directory traversal-style arbitrary file write). An attacker can exploit this remotely over HTTP with no credentials by crafting requests that escape the intended save path and target sensitive locations. Impact ranges from configuration/startup script overwrites and service disruption to disk exhaustion DoS, and in some deployments potential remote code execution if written files are later executed or loaded by the server. 👉 Affected: Feast Feature Server (versions not specified / confirm all prior to vendor fix) | Upgrade to No fix yet - treat as suspicious

    Post summary

    Feast Feature Server is vulnerable to unauthenticated arbitrary file write via a path bypass, allowing potential remote code execution; no patch is available yet and the vendor fix is pending.

    0000060
    232 followersView on X

Explore more