CVE-2026-35589 is a Cross-Site WebSocket Hijacking (CSWSH) vulnerability affecting nanobot, a personal AI assistant, in versions prior to 0.1.5. The vulnerability exists in the WebSocket server component located in bridge/src/server.ts and stems from an incomplete remediation of a previous vulnerability. An attacker can exploit this flaw by having a user visit a malicious website while running the bridge service, allowing the website to establish an unauthorized WebSocket connection and gain full access to the bridge API. The vulnerability carries a CVSS score of 8.0 (HIGH) with a network attack vector, high complexity, and no privilege requirements. Exploitation requires user interaction (UI:R) but affects the confidentiality and integrity of the affected system. The root cause is the failure to validate the Origin header during WebSocket handshake and the default-disabled token authentication mechanism. Successful exploitation enables attackers to hijack WhatsApp sessions, intercept incoming messages, steal authentication QR codes, and send unauthorized messages on behalf of the compromised user. There is currently no evidence of active exploitation, with the vulnerability absent from the Known Exploited Vulnerabilities (KEV) catalog and inactive on vulnerability hot lists. The EPSS score of 0.00021 indicates minimal historical exploitation probability. The vulnerability has been remediated in version 0.1.5, and organizations running nanobot should prioritize updating to this patched version to mitigate the risk.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 0.1.5CPE matchmatch criteria | cpe:2.3:a:nanobot:nanobot:*:*:*:*:*:python:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.8 Bluesky, 0.5 Mastodon, and 1.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.