Path Traversal Vulnerability in Void AI Agent File-Reading Tools
CVE-2026-65698
Key Information:
- Vendor
Voideditor
- Status
- Vendor
- CVE Published:
- 23 July 2026
Badges
What is CVE-2026-65698?
Void versions up to 1.3.4 exhibit a path traversal vulnerability in their AI agent file-reading tools, which can be exploited by network-adjacent attackers. This flaw enables unauthorized access to arbitrary host files outside the designated workspace by injecting instructions into the content being processed by the AI agent. Attackers can utilize absolute paths or file:// URIs through various tools like read_file, ls_dir, get_dir_tree, and search_*, circumventing workspace confinement and approval mechanisms. As a result, this vulnerability facilitates the silent exfiltration of sensitive data, including SSH private keys and cloud credentials, posing significant security risks.
Affected Version(s)
void 0 <= 1.3.4
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
