CVE-2026-51853 UNKNOWN

CVE-2026-51853

Published: 2026-09-30

Description

agent-zero 1.7, 1.8, 1.9, and 1.10 is vulnerable to Directory Traversal in python/helpers/file_browser.py:FileBrowser.__init__. The FileBrowser class initializes with the host root directory as the workspace, allowing the agent to access any file on the system without restriction.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…