Beveiligingsadvies

CVE-2026-2285

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-03-30 15:51:39
Laatst bijgewerkt 2026-04-01 18:45:39
Toegewezen door certcc
CVSS-score 7.5
Status PUBLISHED

Beschrijving

CrewAI contains a arbitrary local file read vulnerability in the JSON loader tool that reads files without path validation, enabling access to files on the server.