CVE-2026-91198

GrowthBook through 5.0.1 returns unredacted fact table definitions including raw warehouse SQL in payloads served by unauthenticated public report and experiment endpoints. Attackers with knowledge of a publicly shared report or experiment identifier can read internal data warehouse query text, schema, table names, filter values and datasource identifiers.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-14 23:19

Updated : 2026-09-15 19:17


NVD link : CVE-2026-91198

Mitre link : CVE-2026-91198

CVE.ORG link : CVE-2026-91198


JSON object : View

Products Affected

No product.

CWE
CWE-201

Insertion of Sensitive Information Into Sent Data