{"id":"CVE-2026-47735","title":"Arc is an open, SQL-native time-series database for telemetry","summary":"Arc is an open, SQL-native time-series database for telemetry. Prior to version 26.06.1, Arc's user-SQL validator (`internal/api/query.go:ValidateSQLRequest`) blocked only `read_parquet(` and `arc_partition_agg(` via regex denylist. The …","severity":"high","cwe":["CWE-22","CWE-200","CWE-918"],"vendor":"basekick-labs","product":"github.com/basekick-labs/arc","affected":["github.com/basekick-labs/arc < 0.0.0-20260520141557-91bdc29d1a02"],"patched":["github.com/basekick-labs/arc 0.0.0-20260520141557-91bdc29d1a02"],"published":"2026-08-21","updated":"2026-09-09","sourceUpdated":"2026-09-09T21:06:39.057","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-47735","references":[{"url":"https://github.com/Basekick-Labs/arc/commit/91bdc29d1a02178ccf8c66375eccf85203108dfb","label":"security-advisories@github.com"},{"url":"https://github.com/Basekick-Labs/arc/pull/442","label":"security-advisories@github.com"},{"url":"https://github.com/Basekick-Labs/arc/releases/tag/v26.06.1","label":"security-advisories@github.com"},{"url":"https://github.com/Basekick-Labs/arc/security/advisories/GHSA-p2j4-c4g6-rpf5","label":"security-advisories@github.com"},{"url":"https://github.com/advisories/GHSA-p2j4-c4g6-rpf5"}],"tags":["nvd","ghsa","go"],"epss":0.00294,"epssPercentile":0.22155,"aliases":["GHSA-p2j4-c4g6-rpf5"],"ecosystem":"go","ingestedAt":"2026-07-07T15:41:59.612Z","slug":"CVE-2026-47735","body":"## Overview\n\nArc is an open, SQL-native time-series database for telemetry. Prior to version 26.06.1, Arc's user-SQL validator (`internal/api/query.go:ValidateSQLRequest`) blocked only `read_parquet(` and `arc_partition_agg(` via regex denylist. The broader DuckDB I/O function family — `read_csv_auto`, `read_csv`, `read_json`, `read_json_auto`, `read_text`, `read_blob`, `glob`, `parquet_metadata`, `parquet_schema`, `read_xlsx`, etc. — was not blocked. RBAC table-reference extraction inspected only `FROM`/`JOIN` clauses, so scalar table functions in the `SELECT` list slipped past both layers. This is fixed in 2026.06.1 via a structural sandbox at the DuckDB layer. After lockdown, DuckDB refuses to open any file outside the allowlist and refuses further `INSTALL`/`LOAD`. Already-loaded extensions remain callable. Some workarounds are available. Restrict API access to known-trusted networks via firewall rules or, as a temporary mitigation, add `read_csv*`/`read_json*`/`glob` etc. to `dangerousSQLPattern` in `internal/api/query.go`.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.\n\n## Package advisory (CVE-2026-47735)\n\nAffected packages:\n\n- `github.com/basekick-labs/arc < 0.0.0-20260520141557-91bdc29d1a02`\n\nPatched in:\n\n- `github.com/basekick-labs/arc 0.0.0-20260520141557-91bdc29d1a02`\n\nSource: https://github.com/advisories/GHSA-p2j4-c4g6-rpf5","depth":"twilight","depthScore":41,"depthScoreParts":{"impact":41.3,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}