SCA: security update for omniroute (GHSA-hf57-cqmx-p4gr)

critical Tenable Cloud Security Plugin ID 447918

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- OmniRoute is an open-source AI gateway providing a single endpoint for multiple model providers. In 3.8.49
and earlier, the OmniRoute POST /api/acp/agents custom ACP agent endpoint accepted attacker-controlled
binary and versionCommand values and used only a self-consistency check before execFileSync executed the
selected interpreter and arguments. The same request called refreshAgentCache, and resolveVersionProbe
accepted the matched command before the execFileSync sink ran it. The tokenizeVersionCommand function and
DISALLOWED_VERSION_COMMAND_CHARS filter rejected a limited set of shell metacharacters but still allowed
interpreter evaluation arguments. The isAuthenticated function relied on isAuthRequired, which accepted
anonymous requests when requireLogin was false, while api/acp/ was absent from LOCAL_ONLY_API_PREFIXES and
SPAWN_CAPABLE_PREFIXES. With requireLogin=false or during a fresh-instance bootstrap window, a remote
anonymous request could supply an interpreter evaluation argument and execute arbitrary code in the server
container. With requireLogin=true and a configured management password, exploitation instead required a
management session or management-scoped API key. No fixed version is available as of this review.
(CVE-2026-88062)

Solution

There is no known solution at this time.

See Also

https://github.com/advisories/GHSA-hf57-cqmx-p4gr

Plugin Details

Severity: Critical

ID: 447918

Version: Revision 1.1

Type: Local

Family: SCA Checks

Published: 9/11/2026

Updated: 9/11/2026

Risk Information

VPR

Risk Factor: Medium

Score: 4.9

Percentile: 58.19

Vendor

Vendor Severity: Critical

CVSS v2

Risk Factor: High

Base Score: 7.5

Temporal Score: 5.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

CVSS Score Source: CVE-2026-88062

CVSS v3

Risk Factor: Critical

Base Score: 9.8

Temporal Score: 8.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

CVSS v4

Risk Factor: Critical

Base Score: 9.5

Threat Score: 8.4

Threat Vector: CVSS:4.0/E:U

Vector: CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 9/10/2026

Vulnerability Publication Date: 9/10/2026

Reference Information

CVE: CVE-2026-88062