Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-51882

Quick assessment

Affected
n/a n/a
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Langchain-Chatchat 0.3.0 中与 OpenAI 兼容的文件上传端点 存在路径穿越漏洞。攻击者可通过构造恶意的文件名,将文件写入到 目录之外的任意位置。

AI Predicted 8.1 Difficulty: Easy EPSS 0.14% · P3

Affected Version Matrix 1

VendorProduct Version RangeStatus
n/a n/a n/a affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-51882

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
The OpenAI-compatible file upload endpoint `/v1/files` in Langchain-Chatchat 0.3.0 is vulnerable to path traversal. An attacker can write files to arbitrary locations outside the `openai_files` directory by crafting malicious filenames.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2026-51882

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-51882

请登录查看更多情报信息。

Vendor Advisories for CVE-2026-51882 (1)

Exploits & Public PoCs for CVE-2026-51882 (1)

Same Patch Batch · n/a · 2026-10-01 · 21 CVEs total

CVE-2026-103484 8.8 HIGH pgvector buffer overflow in IVFFlat index build
CVE-2026-103531 5.5 MEDIUM OpenSC card-setcos.c setcos_construct_fci_44 stack-based overflow
CVE-2026-51876 DeepTutor 1.4.0授权绕过漏洞
CVE-2026-51875 Devika v1.0存在路径遍历漏洞
CVE-2026-51892 RagFlow 0.24.0 /v1/document/get/ 接口访问控制错误漏洞
CVE-2026-51896 RagFlow 0.25.3恢复模块越权访问漏洞
CVE-2026-51886 LangFlow v1.9.3代码注入漏洞
CVE-2026-51878 DeepTutor 1.4.0 对象标识符授权绕过漏洞
CVE-2026-51873 Devika v1.0目录遍历漏洞
CVE-2026-51881 DeepTutor 1.4.0远程代码注入漏洞
CVE-2026-51879 DeepTutor 1.4.0 认证绕过漏洞
CVE-2026-51897 RAGFlow 0.24.0 get_dataset接口存在命令执行漏洞
CVE-2026-51884 Langchain Chatchat 0.3.1临时文档上传路径遍历漏洞
CVE-2026-51888 Langflow v1.8.4 目录遍历漏洞
CVE-2026-51893 RagFlow 0.24.0 越权访问漏洞
CVE-2026-51880 Deeptutor 1.4.0 EditFileTool路径遍历漏洞
CVE-2026-51895 Ragflow 0.24.0及之前版本存在更新元数据不当访问控制漏洞
CVE-2026-51874 Devika v1.0路径穿越漏洞
CVE-2026-51894 RAGFlow 0.24.0 任意文件读取漏洞
CVE-2026-51883 Langchain-Chatchat 0.3.x 知识库创建接口路径穿越漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2026-51882

No comments yet


Leave a comment