All 4 CVE vulnerabilities found in banks, with AI-generated Chinese analysis, references, and POCs.
Vendor: masci
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-71492 | Banks: Path traversal in `DirectoryPromptRegistry.set()` allows arbitrary file write outside the registry root CWE-22 | 6.0 | Medium | 2026-08-20 |
| CVE-2026-61536 | Banks: Unsafe importlib.import_module of attacker-controlled Tool.import_path in CompletionExtension allows RCE CWE-94 | 7.5 | High | 2026-07-30 |
| CVE-2026-62663 | Banks: Arbitrary File Read via Path Traversal in Media Filters (image/audio/video/document) CWE-22 | 7.5 | High | 2026-07-30 |
| CVE-2026-44209 | Banks: Critical Remote Code Execution (RCE) via Jinja2 SSTI CWE-1336 | 7.5 | High | 2026-05-26 |
All 4 known CVE vulnerabilities affecting banks with full Chinese analysis, references, and POCs where available.