Cleartext storage of sensitive information in Nautobot - #VU151443
Published: September 19, 2026
Vulnerability details
The vulnerability allows a remote user to disclose API tokens and password hashes and gain administrative control of the Nautobot instance.
The vulnerability exists due to cleartext storage of sensitive information in Custom Link Jinja2 template rendering when rendering a custom link on an object detail page. A remote user can create a crafted Custom Link that exfiltrates credentials when viewed to disclose API tokens and password hashes and gain administrative control of the Nautobot instance.
User interaction is required because a viewer must follow the crafted link.