{"id":"CVE-2026-57449","published":"2026-09-25T23:16:53.990","lastModified":"2026-09-28T14:17:16.140","description":"Actual is a local-first personal finance tool. Prior to 26.7.0, Actual Sync Server's CORS proxy is intended to let authenticated users fetch resources only from repositories listed in the official plugin allowlist. When `ACTUAL_GITHUB_TOKEN` is configured, the proxy automatically attaches the server's GitHub token to GitHub requests. The GitHub API allowlist check uses a raw `startsWith()` prefix test for `/repos/{owner}/{repo}` without requiring a path boundary after the repository name. If an allowlisted public plugin repository is `https://github.com/acme/plugin`, the proxy also accepts GitHub API URLs. Those URLs are outside the allowlisted repository but still pass because their API path starts with `/repos/acme/plugin`. The proxy then forwards the request with the server's `ACTUAL_GITHUB_TOKEN`, allowing any authenticated Actual user to read private GitHub resources reachable by that token. Version 26.7.0 fixes the issue.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":["CWE-200","CWE-284","CWE-863"],"vendors":[],"products":[],"references":[{"url":"https://github.com/actualbudget/actual/security/advisories/GHSA-m62c-5q34-f3cf","tags":[]},{"url":"https://github.com/actualbudget/actual/security/advisories/GHSA-m62c-5q34-f3cf","tags":[]}],"exploitRefs":[{"url":"https://github.com/actualbudget/actual/security/advisories/GHSA-m62c-5q34-f3cf","tags":[]},{"url":"https://github.com/actualbudget/actual/security/advisories/GHSA-m62c-5q34-f3cf","tags":[]}],"hasPoc":true,"ai":null}