Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-22218

Опубликовано: 20 янв. 2026
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

Chainlit versions prior to 2.9.4 contain an arbitrary file read vulnerability in the /project/element update flow. An authenticated client can send a custom Element with a user-controlled path value, causing the server to copy the referenced file into the attacker’s session. The resulting element identifier (chainlitKey) can then be used to retrieve the file contents via /project/file/, allowing disclosure of any file readable by the Chainlit service.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:chainlit:chainlit:*:*:*:*:*:*:*:*
Версия до 2.9.4 (исключая)

EPSS

Процентиль: 6%
0.00025
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 6.5
github
19 дней назад

Chainlit versions prior to 2.9.4 contain an arbitrary file read vulnerability in the /project/element update flow. An authenticated client can send a custom Element with a user-controlled path value, causing the server to copy the referenced file into the attacker’s session. The resulting element identifier (chainlitKey) can then be used to retrieve the file contents via /project/file/<chainlitKey>, allowing disclosure of any file readable by the Chainlit service.

EPSS

Процентиль: 6%
0.00025
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-22