THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-ghvf-qf6h-g8x5 (high) — NocoBase: Arbitrary File Write chained with Local file Inclusion leads to Remote code execution

[GHSA] GHSA-ghvf-qf6h-g8x5 (high) — NocoBase: Arbitrary File Write chained with Local file Inclusion leads to Remote code execution

highgithub_advisoriesPublished 2026-08-20

GHSA-ghvf-qf6h-g8x5 Severity: high CVE: None

NocoBase: Arbitrary File Write chained with Local file Inclusion leads to Remote code execution

## Executive Summary

Two vulnerabilities were identified and chained to achieve authenticated remote code execution

The first vulnerability allows any authenticated admin to redirect the file upload storage root to an arbitrary path on disk including the

MITRE ATT&CK techniques

Indicators of compromise

Original source: https://github.com/advisories/GHSA-ghvf-qf6h-g8x5