已知在 0.33.0 及更早版本中,工作区浏览端点未能正确验证路径查询参数,使得远程攻击者能够枚举宿主文件系统中的任意目录。攻击者可以通过遍历目录结构来定位项目目录,从而识别进一步利用的目标。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| knowns-dev | knowns | 0 ~ 0.33.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-88899 | 9.8 CRITICAL | knowns before 0.31.0 External Control of Agent Working Directory via x-opencode-directory |
| CVE-2026-88937 | 8.8 HIGH | knowns through 0.33.0 Path Traversal via Template Engine |
| CVE-2026-88939 | 8.3 HIGH | knowns through 0.33.0 Authorization Bypass via project.set Bootstrap Exemption |
| CVE-2026-88938 | 6.5 MEDIUM | knowns through 0.33.0 Path Traversal via code.find MCP tool |
No comments yet