Link Following Vulnerability in open-multi-agent Product by Open Multi Agent
CVE-2026-108600

5.7MEDIUM

Key Information:

Vendor
CVE Published:
10 October 2026

What is CVE-2026-108600?

A vulnerability in the open-multi-agent product, specifically in the file_write tool, enables attackers to exploit dangling symlinks. By doing so, they can create files outside of the workspace root. This is accomplished through prompt injection, allowing the attacker to direct the agent to write maliciously altered content to any writable location within the agent's process. If exploited, this could lead to unauthorized access and potential data breaches, emphasizing the importance of timely updates and security best practices.

Affected Version(s)

open-multi-agent 1.5.0 <= 1.21.2

References

CVSS V4

Score:
5.7
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

HaiND from the Post and Telecommunication Institute of Technology
.