Логотип exploitDog
bind:CVE-2024-8551
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-8551

Количество 2

Количество 2

nvd логотип

CVE-2024-8551

11 месяцев назад

A path traversal vulnerability exists in the save-workflow and load-workflow functionality of modelscope/agentscope versions prior to the fix. This vulnerability allows an attacker to read and write arbitrary JSON files on the filesystem, potentially leading to the exposure or modification of sensitive information such as configuration files, API keys, and hardcoded passwords.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-j9rw-qm5f-r8xm

11 месяцев назад

AgentScope path traversal vulnerability in save-workflow

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-8551

A path traversal vulnerability exists in the save-workflow and load-workflow functionality of modelscope/agentscope versions prior to the fix. This vulnerability allows an attacker to read and write arbitrary JSON files on the filesystem, potentially leading to the exposure or modification of sensitive information such as configuration files, API keys, and hardcoded passwords.

CVSS3: 9.1
0%
Низкий
11 месяцев назад
github логотип
GHSA-j9rw-qm5f-r8xm

AgentScope path traversal vulnerability in save-workflow

CVSS3: 9.1
0%
Низкий
11 месяцев назад

Уязвимостей на страницу