Junglewise Threat Intelligence

CVE-2026-6106: 1Panel-dev MaxKB stored XSS in Public Chat Interface

CVE-2026-6106 · Severity: low · CVSS 3.5 · Published 2026-04-11

Technologies: 1Panel-dev MaxKB. Vendors: 1Panel-dev.

Executive brief

1Panel-dev MaxKB, an open-source platform for building AI agents, is vulnerable to a security flaw in its public chat interface. An attacker with account access can create an application with a specially crafted name that, when viewed by other users or visitors, executes malicious code in their web browser. This could allow an attacker to perform unauthorized actions on behalf of other users or disrupt the chat service.

Technical details

A stored cross-site scripting (XSS) vulnerability exists in 1Panel-dev MaxKB through version 2.2.1. The vulnerability is located in the `StaticHeadersMiddleware` function within `apps/common/middleware/static_headers_middleware.py` (and related chat middleware). The root cause is the failure to escape the `application_name` and `application_icon` arguments before they are injected into the HTML response of the public chat interface (`/ui/chat/{access_token}`). An authenticated attacker can provide a malicious payload via the `name` parameter during application creation (POST to `/api/application/`). When a victim visits the public chat URL, the server performs unescaped string replacement, allowing the attacker to break out of the `<title>` tag and execute arbitrary JavaScript. The issue is resolved in version 2.8.0 by implementing proper HTML escaping.

Affected products

  • 1Panel-dev MaxKB <= 2.2.1

Timeline

  • 2026-03-17: disclosed: Public exploit details shared on GitHub issues
  • 2026-03-23: patched: Fix committed to repository
  • 2026-04-10: advisory: Vendor released version 2.8.0 containing the fix
  • 2026-04-11: other: CVE-2026-6106 published

References