Impact
A path‑traversal vulnerability in the sandbox volume handling of Daytona allows an attacker to provide a volume identifier that resolves to an arbitrary host path. This can expose sensitive files or data from other tenants and potentially give the attacker ability to escape the sandbox environment. The weakness is a classic directory traversal flaw that may lead to host path disclosure or sandbox escape; the CVE description does not indicate that remote code execution is possible.
Affected Systems
Daytona by daytonaio. Versions earlier than 0.186 are affected; any deployment using a sandbox volume reference before the 0.186 release is vulnerable.
Risk and Exploitability
The CVSS score is 4.2, giving it a medium severity. No EPSS score is available, and the vulnerability is not listed in the CISA KEV catalog. Attackers would need to submit a malicious volume reference, likely through an API or UI that accepts sandbox configurations. The resulting sandbox escape provides potential for cross‑tenant data access.
OpenCVE Enrichment
Github GHSA