Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 12 Aug 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Eosphoros-ai
Eosphoros-ai db-gpt |
|
| Vendors & Products |
Eosphoros-ai
Eosphoros-ai db-gpt |
Tue, 11 Aug 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | DB-GPT v0.8.1 contains an unauthenticated path traversal vulnerability that allows remote attackers to write arbitrary files to any location on the server by injecting directory traversal sequences into the user_id HTTP header of the Python file-upload endpoint. Attackers can send a crafted multipart upload request with a traversal-poisoned user_id header to escape the intended upload directory and write attacker-controlled content to locations such as Python startup hooks, cron directories, or agent scripts, resulting in remote code execution. | |
| Title | DB-GPT v0.8.1 Path Traversal Arbitrary File Write via user_id Header | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-08-11T19:31:49.107Z
Reserved: 2026-08-10T18:48:59.022Z
Link: CVE-2026-73034
No data.
Status : Received
Published: 2026-08-11T20:18:46.470
Modified: 2026-08-11T20:18:46.470
Link: CVE-2026-73034
No data.
OpenCVE Enrichment
Updated: 2026-08-12T20:15:03Z
-
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')