Executive brief
A vulnerability in the Rapid7 InsightConnect Sed Plugin for Linux allows authorized users to access files they should not be able to see. This plugin is used for automated text manipulation within security workflows. An attacker with basic access to the system could exploit this flaw to read sensitive configuration files or system data, potentially leading to further unauthorized access or data exposure.
Technical details
An arbitrary file read vulnerability exists in the Rapid7 InsightConnect Sed Plugin on Linux platforms. The flaw is rooted in insufficient input validation of the 'expression' parameter, which allows for path traversal (CWE-22). An authenticated attacker with network access can leverage this to read arbitrary files from the underlying host's filesystem. The vulnerability is addressed in version 2.0.5 of the plugin. The attack requires low privileges and no user interaction.
Affected products
- Rapid7 InsightConnect Sed Plugin < 2.0.5
Timeline
- 2026-06-25: disclosed
- 2026-06-25: advisory