Impact
The issue resides in MetaGPT’s editor module, where an improperly sanitized file path supplied to the read function can be manipulated to reference files outside the intended directory. This path traversal allows an attacker with local execution rights to read arbitrary files on the host. The vulnerability is classified as CWE‑22 and was identified in versions of MetaGPT up to 0.8.2.
Affected Systems
Manufactured by FoundationAgents, the product MetaGPT is affected by this flaw in all releases through version 0.8.2. No information currently indicates that newer versions contain the fix, so any instance running 0.8.2 or earlier must be inspected for the presence of the vulnerable code.
Risk and Exploitability
The CVSS score of 4.8 indicates moderate severity, and the EPSS score is not available, suggesting limited evidence of active exploitation. The vulnerability is not listed in CISA’s KEV catalog. Because the attack requires local code execution, the danger is limited to users who can run MetaGPT directly on the system; privilege escalation would be needed to gain read access to protected files.
OpenCVE Enrichment