Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

AI PRP: Local File Inclusion in agentscope (CVE-2024-8438) #588

Open
crackatoa opened this issue Feb 3, 2025 · 1 comment
Open

AI PRP: Local File Inclusion in agentscope (CVE-2024-8438) #588

crackatoa opened this issue Feb 3, 2025 · 1 comment
Assignees
Labels
Contributor main The main issue a contributor is working on (top of the contribution queue).

Comments

@crackatoa
Copy link

crackatoa commented Feb 3, 2025

Hello,

I want to develop a plugin for agentscope LFI, the vulnerable API is not sanitized correctly which allow local file inclusion.

Vulnerable version: v0.0.4
CVSS: 7.5 (high)

Reference:

@tooryx
Copy link
Member

tooryx commented Feb 3, 2025

Hi @crackatoa,

You can work on this.

~tooryx

@tooryx tooryx added the Contributor main The main issue a contributor is working on (top of the contribution queue). label Feb 3, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Contributor main The main issue a contributor is working on (top of the contribution queue).
Projects
None yet
Development

No branches or pull requests

2 participants