Metrics
Affected Vendors & Products
Tue, 28 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 28 Apr 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Erlichliu
Erlichliu claude-agent-sdk-master |
|
| Vendors & Products |
Erlichliu
Erlichliu claude-agent-sdk-master |
Tue, 28 Apr 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in ErlichLiu claude-agent-sdk-master up to b185aa7ff0d864581257008077b4010fca1747bf. Affected by this vulnerability is an unknown functionality of the file app/api/agent-output/route.ts. The manipulation of the argument outputFile leads to path traversal. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. This product uses a rolling release model to deliver continuous updates. As a result, specific version information for affected or updated releases is not available. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | ErlichLiu claude-agent-sdk-master route.ts path traversal | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-04-28T06:30:15.507Z
Updated: 2026-04-28T14:33:44.662Z
Reserved: 2026-04-27T17:05:37.684Z
Link: CVE-2026-7235
Updated: 2026-04-28T14:07:01.355Z
Status : Deferred
Published: 2026-04-28T08:16:02.467
Modified: 2026-04-28T20:31:00.800
Link: CVE-2026-7235
No data.