Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Versions 3.25.23 and below contain a vulnerability where .rooignore protections could be bypassed using symlinks. This allows an attacker with write access to the workspace to trick the extension into reading files that were intended to be excluded. As a result, sensitive files such as .env or configuration files could be exposed. An attacker able to modify files within the workspace could gain unauthorized access to sensitive information by bypassing .rooignore rules. This could include secrets, configuration details, or other excluded project data. This is fixed in version 3.26.0.
History

Fri, 05 Sep 2025 23:15:00 +0000

Type Values Removed Values Added
Description Roo Code is an AI-powered autonomous coding agent that lives in users' editors. Versions 3.25.23 and below contain a vulnerability where .rooignore protections could be bypassed using symlinks. This allows an attacker with write access to the workspace to trick the extension into reading files that were intended to be excluded. As a result, sensitive files such as .env or configuration files could be exposed. An attacker able to modify files within the workspace could gain unauthorized access to sensitive information by bypassing .rooignore rules. This could include secrets, configuration details, or other excluded project data. This is fixed in version 3.26.0.
Title Roo Code: Symlink-bypass of .rooignore can lead to unintended file disclosure
Weaknesses CWE-59
References
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2025-09-05T22:55:54.546Z

Reserved: 2025-08-29T16:19:59.012Z

Link: CVE-2025-58373

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-09-05T23:15:30.830

Modified: 2025-09-05T23:15:30.830

Link: CVE-2025-58373

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.