PT-2026-44005 · 3Clyp50+1 · Agent-Zero
CVSS v4.0
7.1
High
| Vector | AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Agent Zero versions prior to 1.15
Description
An issue allows unauthenticated attackers to read arbitrary files by providing crafted paths to the image file serving endpoint. The system relies only on an extension allowlist while the path containment check is disabled. This allows access to any file with an image extension readable by the process, including those outside the agent workspace, user home directories, and mounted volumes. Additionally, the lack of path canonicalization—the process of converting a path to its simplest, standard form—enables symlink-based escapes.
Recommendations
Update Agent Zero to version 1.15 or later.
Exploit
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Agent-Zero