Description
DB-GPT v0.7.5 and v0.8.0 contains directory traversal in python_file_upload (packages/dbgpt-app/src/dbgpt_app/openapi/api_v1/python_upload_api.py:42). A remote attacker can use the validated exploitation path to write files outside the intended workspace or storage boundary.
Published: 2026-09-30
Score: n/a
EPSS: n/a
KEV: No
Impact: Remote Arbitrary File Write
Action: Assess Impact
AI Analysis

Impact

The vulnerability is a directory traversal flaw in the python_file_upload function of DB‑GPT’s API. A remote attacker can supply a crafted file path that bypasses the intended sandbox and write arbitrary files beyond the application’s workspace. This capability could allow the attacker to place malicious code or configuration files that might be executed by the application or retrieved by other users, compromising confidentiality, integrity, or availability of the system.

Affected Systems

The flaw exists in DB‑GPT version 0.7.5 and 0.8.0, as the code resides in dbgpt-app/src/dbgpt_app/openapi/api_v1/python_upload_api.py at line 42. Any deployment of these releases that exposes the upload endpoint is susceptible.

Risk and Exploitability

No CVSS score is published for this entry and the EPSS score is not available, so the exact likelihood of exploitation is unknown. The vulnerability is not listed in CISA’s KEV catalog. The attack path is inferred to be through the exposed python_file_upload API endpoint. An attacker would need network access to the API and the ability to craft the file upload request. Given the absence of publicly available exploit code, the risk level should be considered moderate to high for systems that allow remote uploads without additional controls.

Generated by OpenCVE AI on September 30, 2026 at 23:03 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update to a newer DB‑GPT release that removes directory traversal in python_file_upload.
  • If an update is not possible, patch the python_file_upload handler to sanitize filenames and ensure resolved paths remain inside the intended workspace using a safe path join function.
  • Restrict the application’s file system permissions so it can write only within the designated workspace and cannot create files elsewhere.
  • Disable or lock down the python_file_upload endpoint for users who do not require uploading files.

Generated by OpenCVE AI on September 30, 2026 at 23:03 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 30 Sep 2026 23:30:00 +0000

Type Values Removed Values Added
Title Directory Traversal in DB‑GPT Python File Upload Allows Arbitrary File Write
Weaknesses CWE-22

Wed, 30 Sep 2026 21:15:00 +0000

Type Values Removed Values Added
Description DB-GPT v0.7.5 and v0.8.0 contains directory traversal in python_file_upload (packages/dbgpt-app/src/dbgpt_app/openapi/api_v1/python_upload_api.py:42). A remote attacker can use the validated exploitation path to write files outside the intended workspace or storage boundary.
References

Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-30T20:58:34.282Z

Reserved: 2026-06-08T00:00:00.000Z

Link: CVE-2026-51864

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-30T21:17:12.370

Modified: 2026-09-30T21:17:12.370

Link: CVE-2026-51864

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-30T23:15:14Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')