NY-squared AI[verified]@NYsquaredAIDisclosure
CVE‑2026‑5595 in griptape‑ai 0.19.4 allows path traversal via prompt injection, enabling reading /etc/passwd; the vendor has not responded and no patch is available.
NY-squared AI[verified]@NYsquaredAIDisclosure
The tweet discloses CVE‑2026‑5595, a path‑traversal flaw in Griptape‑AI's FileManagerTool, highlights the lack of input sanitization, and notes the vendor has yet to issue a patch.
Infoflowcloud@infoflowcloudDisclosure
CVE-2026-5595 has been identified in griptape‑ai griptape 0.19.4, affecting certain file load and save functions; no proof‑of‑concept, exploit, active exploitation, or patch information is provided.
CVE@CVEnewDisclosure
The post reports the detection of CVE-2026-5595 in griptape‑ai griptape 0.19.4, noting affected functions but provides no further technical or exploit details.