CVE-2026-6117General

LOWCVSS 2.1 · LOW

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was found in AstrBotDevs AstrBot up to 4.22.1. This issue affects the function install_plugin_upload of the file astrbot/dashboard/routes/plugin.py of the component install-upload Endpoint. The manipulation of the argument File results in sandbox issue. The attack can be executed remotely. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-264CWE-265

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 4 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • General: 3 classified signals
  • Disclosure: 1 classified signal
  • 4 total mentions across 1 day

Deep dive

Activity timeline4 mentions / 1d
01234Mentions · 2026-04-12: 4Technical Details · 2026-04-12: 204-12
Signal classification2 categories
General
375.0%
Disclosure
125.0%
Referenced assets4 URLs
Full discourse4 posts
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2026-6117 📊 Severity: 6.3 🚨 Risk Level: Medium 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-6117 #CVE-2026-6117 #CVE #Medium #CyberSecurity #InfoSec https://t.co/hxYqlBHCO5

    Post summary

    A brief CVE alert for CVE‑2026‑6117 noting a medium severity score of 6.3, with no additional exploit or patch information.

    0001031
    125 followersView on X
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-6117 A vulnerability was found in AstrBotDevs AstrBot up to 4.22.1. This issue affects the function install_plugin_upload of the file astrbot/dashboard/routes/plugin.py of t… https://www.cve.org/CVERecord?id=CVE-2026-6117 ----- Traducción: CVE-2026-6117 Se … http://infoflow.cloud`

    Post summary

    The post announces a new CVE for AstrBot, indicating the affected component and linking to the CVE record, but contains no additional technical details, PoC, exploit, or mitigation information.

    0000033
    71 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-6117 A vulnerability was found in AstrBotDevs AstrBot up to 4.22.1. This issue affects the function install_plugin_upload of the file astrbot/dashboard/routes/plugin.py of t… https://www.cve.org/CVERecord?id=CVE-2026-6117

    Post summary

    The text reports a vulnerability in AstrBotDevs AstrBot affecting the install_plugin_upload function up to version 4.22.1, but provides no details on exploitation, patches, or technical specifics.

    00000499
    57.1K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-6117 Remote Code Execution via File Upload in AstrBot Up to 4.22.1 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-6117

    Post summary

    CVE‑2026‑6117 is a Remote Code Execution vulnerability in AstrBot (versions up to 4.22.1) that can be triggered via file upload.

    0000060
    4.0K followersView on X

Explore more