highVulnerability

GHSA-869j-r97x-hx2g

## Summary Anki launches a local HTTP server to serve media files and web pages for parts of its interface. The server fails to validate requests in the following ways: 1. No sufficient validation of the Origin header. 2. Some endpoints are vulnerable to path traversal attacks. This allows malicious websites to exfiltrate local files given a known path. ## Browser impact The severity varies by browser because of Private Network Access (PNA), a newer spec that restricts web pages from making requests to localhost/local network addresses: Chrome/Chromium (including Edge, Brave): Largely protected, as Chrome has implemented PNA restrictions for several years and now puts local network access behind a permission prompt. Safari: Hasn't implemented PNA yet, though macOS has some OS-level protections. Firefox: Most vulnerable — hasn't implemented PNA yet, though it's reportedly planned for Firefox 151. ## Patches The issue was fixed as of Anki 25.09.3

Properties

ghsa_id
GHSA-869j-r97x-hx2g
severity
high
summary
Anki's local HTTP server does not sufficiently validate requests
cve_id
GHSA-869j-r97x-hx2g
is_ghsa_only
true
ghsa_published
2026-06-19T22:10:57Z
source_url
https://github.com/advisories/GHSA-869j-r97x-hx2g
ghsa_updated
2026-06-19T22:10:58Z

Related Entities (5)

VULNERABLE_TO (1)

[Software]pip/aqt

AFFECTS (1)

[Software]pip/aqt

HAS_WEAKNESS (2)

[Weakness]Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
[Weakness]Origin Validation Error

REPORTED_BY (1)

[Source]GitHub Advisory Database

Explore deeper with Ninja Signal's threat intelligence graph

GHSA-869j-r97x-hx2g — Ninja Signal Threat Intelligence | Ninja Signal