Two high-severity vulnerabilities in OpenHarness exposed administrative functionality to remote users through the platform’s gateway and channel layers. CVE-2026-40502 affects versions prior to commit dd1d235 and stems from insufficient separation between local-only and remote-safe commands in the gateway handler, allowing remote gateway users with chat access to invoke sensitive administrative actions such as changing permission modes on a running instance without operator approval. The issue is classified as CWE-862 and carries a CVSS v3.1 score vector of AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H.
A second flaw, CVE-2026-6819, affects HKUDS OpenHarness prior to the fix delivered in pull request #156 and later release v0.1.7, exposing plugin lifecycle commands including /plugin install, /plugin enable, /plugin disable, and /reload-plugins to remote senders by default. An attacker who gains access through the channel layer could use the weakness to install or activate untrusted plugins and alter plugin trust state remotely, creating a path to full compromise of confidentiality, integrity, and availability. The vulnerability is tracked as CWE-276 with CVSS v3.1 vector AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H.

See affected versions and whether adversaries are exploiting it.
2 events from the most recent confirmed update back to the earliest known activity.
On 2026-04-21, CVE-2026-6819 was disclosed for HKUDS OpenHarness, affecting versions prior to remediation in pull request #156 and the related v0.1.7 release. The issue exposed plugin management commands such as install, enable, disable, and reload to remote senders by default, enabling unauthorized plugin installation and activation if channel-layer access was obtained.
On 2026-04-16, CVE-2026-40502 was disclosed affecting OpenHarness before commit dd1d235. The gateway handler flaw allowed remote gateway users with chat access to invoke sensitive administrative commands, including changing permission modes without operator authorization.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.