knowns versions before 0.31.0 fail to properly validate the x-opencode-directory request header in the /api/opencode proxy endpoint. Remote attackers can supply arbitrary directory paths to execute file operations outside the project root on the host system.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 11 Sep 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Knowns-dev
Knowns-dev knowns |
|
| Vendors & Products |
Knowns-dev
Knowns-dev knowns |
Thu, 10 Sep 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | knowns versions before 0.31.0 fail to properly validate the x-opencode-directory request header in the /api/opencode proxy endpoint. Remote attackers can supply arbitrary directory paths to execute file operations outside the project root on the host system. | |
| Title | knowns before 0.31.0 External Control of Agent Working Directory via x-opencode-directory Header | |
| Weaknesses | CWE-73 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-11T11:07:57.696Z
Reserved: 2026-09-10T11:28:50.297Z
Link: CVE-2026-88899
No data.
Status : Deferred
Published: 2026-09-10T16:18:12.120
Modified: 2026-09-10T19:58:20.507
Link: CVE-2026-88899
No data.
OpenCVE Enrichment
Updated: 2026-09-11T09:15:17Z
Weaknesses