PT-2026-44005 · 3Clyp50+1 · Agent-Zero

·

CVE-2026-47118

·

Published

2026-05-27

·

Updated

2026-05-27

CVSS v4.0

7.1

High

VectorAV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Agent Zero versions prior to 1.15
Description An issue allows unauthenticated attackers to read arbitrary files by providing crafted paths to the image file serving endpoint. The system relies only on an extension allowlist while the path containment check is disabled. This allows access to any file with an image extension readable by the process, including those outside the agent workspace, user home directories, and mounted volumes. Additionally, the lack of path canonicalization—the process of converting a path to its simplest, standard form—enables symlink-based escapes.
Recommendations Update Agent Zero to version 1.15 or later.

Exploit

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-47118

Affected Products

Agent-Zero