changedetection.io is free, open source web page change detection software. Prior to version 0.47.5, when a WebDriver is used to fetch files, `source:file:///etc/passwd` can be used to retrieve local system files, where the more traditional `file:///etc/passwd` gets blocked. Version 0.47.5 fixes the issue.
VTP deterministic threat0.5of 100 · CVSS excluded
VTP analyst assessment
changedetection.io WebDriver local-file access
AI-assisted analytical recommendationDoes not set factual exploitation state
AI review stateREVIEWED
AI priorityNONE
AI confidence92%
Public exploitation · VTP factUNKNOWN
Assessment
changedetection.io before 0.47.5 can disclose local files when WebDriver processes a source:file:// URL that bypasses traditional file:// blocking. CVSS is 6.9 and EPSS is 0.02274; no exploitation evidence is supplied.
Why it matters
An unauthenticated network path can expose files readable by the WebDriver process.
Sensitive local configuration or credentials could be disclosed.
Evidence
1 record references and 1 source references passed trusted post-response validation. The current deterministic record contains 0 independent evidence groups.
Uncertainties
Whether WebDriver fetching is enabled and externally reachable is unknown.
Readable-file scope, public exploitation, and first-party observation are unknown.
First-party honeypot request semantics are potentially consistent with this CVE. This is an unconfirmed candidate match, not proof of exploitation or successful execution.
Next watchpoint
changedetection.io versions below 0.47.5 using WebDriver.
AI baseline history (1)
BASELINE ASSESSED
changedetection.io WebDriver local-file accessgpt-5.6-sol · high
Evidence confidence0%Strongest independent active claim
VelocitySTABLEMaterial events only
First-party telemetryFirst-party honeypot request semantics are potentially consistent with this CVE. This is an unconfirmed candidate match, not proof of exploitation or successful execution.
EPSS is 0.02; this is predictive context, not exploitation evidence.
02
First-party honeypot request semantics are potentially consistent with this CVE. This is an unconfirmed candidate match, not proof of exploitation or successful execution.
02
Material change ledger
What changed
No material changes are recorded for this subject.
03
Claim provenance
Evidence and source independence
0publications detected
0underlying evidence chains
0 primary sources · 0 dependent secondary reports · 0 reports with unresolved independence. Repetition remains visible without multiplying confirmation.
First-party honeypot request semantics are potentially consistent with this CVE. This is an unconfirmed candidate match, not proof of exploitation or successful execution.