CVE-2024-8958 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

In composiohq/composio version 0.4.3, there is an unrestricted file write and read vulnerability in the filetools actions. Due to improper validation of file pa…
Critical CVSS: 9.8

CVE-2024-8958

In composiohq/composio version 0.4.3, there is an unrestricted file write and read vulnerability in the filetools actions. Due to improper validation of file paths, an attacker can read and write files anywhere on the server, potentially leading to privilege escalation or remote code execution.
Vendor
Composio
Product
Composio
CWE
CWE-434
Yayın Tarihi
2025-03-20 10:15:45
Güncelleme
2025-04-01 20:30:20
Source Identifier
security@huntr.dev
KEV Date Added
-

Kategoriler

Referanslar