
🚨 CRITICAL - Unauthenticated arbitrary file write/delete via upload path traversal (CVE-2026-58166) OpenBMB ChatDev through 2.2.0 is vulnerable to an unauthenticated path traversal in its file upload handling, specifically in the uploads session endpoint where save_upload_file builds the destination path. The root cause is improper input validation/path sanitization, allowing traversal sequences (../) or absolute paths in the multipart filename to be used directly in filesystem operations. An attacker can exploit this remotely with no privileges by submitting a crafted multipart upload that forces the server to write to or delete files outside the intended upload directory. Real-world impact includes overwriting or removing critical application/system files, leading to denial of service and potentially further compromise depending on what files can be targeted. 👉 Affected: OpenBMB ChatDev <= 2.2.0 | Upgrade to commit 4fd4da6 (or a release containing it)
Post summary
OpenBMB ChatDev versions <= 2.2.0 are vulnerable to unauthenticated arbitrary file write/delete via upload path traversal (CVE-2026-58166); users should upgrade to commit 4fd4da6 or a later release to remediate the flaw.
