All 3 CVE vulnerabilities found in deepwiki-open, with AI-generated Chinese analysis, references, and POCs.
Vendor: AsyncFuncAI
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-90946 | DeepWiki-Open through commit d92819a Arbitrary File Read via /ws/chat WebSocket CWE-73 | 7.5 | High | 2026-09-14 |
| CVE-2026-72602 | AsyncFuncAI deepwiki-open - Path Traversal CWE-22 | 7.5 | High | 2026-08-11 |
| CVE-2026-72567 | deepwiki-open - Unauthenticated Path Traversal Leading to Arbitrary File Write and Delete CWE-22 | 9.8 | Critical | 2026-08-10 |
All 3 known CVE vulnerabilities affecting deepwiki-open with full Chinese analysis, references, and POCs where available.