CVE-2026-5001General

LOWCVSS 5.5 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw has been found in PromtEngineer localGPT up to 4d41c7d1713b16b216d8e062e51a5dd88b20b054. The affected element is the function do_POST of the file backend/server.py. This manipulation causes unrestricted upload. The attack is possible to be carried out remotely. The exploit has been published and may be used. This product adopts a rolling release strategy to maintain continuous delivery. Therefore, version details for affected or updated releases cannot be specified. The vendor was contacted early about this disclosure but did not respond in any way.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-284CWE-434

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • Peaked at 2 mentions on most recent observed day (2026-03-29)
  • 3 total mentions across 2 days

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-03-28: 1Mentions · 2026-03-29: 2Technical Details · 2026-03-28: 1Technical Details · 2026-03-29: 203-2803-29
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-03-281
General1
2026-03-292
Disclosure1General1
Full discourse3 posts
  • EdgeDetectOps@EdgeDetectOps
    General

    LocalGPT CVE-2026-5001: unrestricted file upload in backend/server.py. Most teams deploy AI tools behind WAF assuming upload protection.

    Post summary

    LocalGPT CVE-2026-5001 permits unrestricted file uploads in backend/server.py, warning that WAFs may not guard against this vulnerability.

    1001046
    17 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-5001 A flaw has been found in PromtEngineer localGPT up to 4d41c7d1713b16b216d8e062e51a5dd88b20b054. The affected element is the function do_POST of the file backend/server.… https://www.cve.org/CVERecord?id=CVE-2026-5001

    Post summary

    The post announces CVE-2026-5001, a flaw in PromtEngineer localGPT affecting the do_POST function in backend/server, but provides no exploit or remediation details.

    0000070
    56.9K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    General

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-5001 - PromtEngineer localGPT http://server.py do_POST unrestricted upload Intel Report: https://ift.tt/8R9T56d

    Post summary

    The alert reports CVE‑2026‑5001 involving an unrestricted upload in PromtEngineer's localGPT, but offers no PoC, exploit tool, patch information, or evidence of active exploitation.

    0000019
    283 followersView on X

Explore more