Medium severity5.3NVD Advisory· Published Sep 14, 2026
CVE-2026-91198
CVE-2026-91198
Description
GrowthBook through 5.0.1 returns unredacted fact table definitions including raw warehouse SQL in payloads served by unauthenticated public report and experiment endpoints. Attackers with knowledge of a publicly shared report or experiment identifier can read internal data warehouse query text, schema, table names, filter values and datasource identifiers.
Affected products
1- Range: <=5.0.1
Patches
Vulnerability mechanics
References
4- github.com/growthbook/growthbook/blob/57d07471b137eb43d9bfb1613d0a1203d21fef88/packages/back-end/src/app.tsnvd
- github.com/growthbook/growthbook/blob/57d07471b137eb43d9bfb1613d0a1203d21fef88/packages/back-end/src/services/reports.tsnvd
- github.com/growthbook/growthbook/issues/6541nvd
- www.vulncheck.com/advisories/growthbook-through-5.0.1-information-disclosure-via-public-endpointsnvd
News mentions
0No linked articles in our index yet.