Beveiligingsadvies

CVE-2026-2286

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-03-30 15:51:25
Laatst bijgewerkt 2026-04-01 18:46:31
Toegewezen door certcc
CVSS-score 9.8
Status PUBLISHED

Beschrijving

CrewAI contains a server-side request forgery vulnerability that enables content acquisition from internal and cloud services, facilitated by the RAG search tools not properly validating URLs provided at runtime.