Description
ByteDance DeerFlow before commit 2176b2b contains a path traversal and arbitrary file write vulnerability in bootstrap-mode custom-agent creation where the agent name validation is bypassed. Attackers can supply traversal-style values or absolute paths as the agent name to influence directory creation and write files outside the intended custom-agent directory, potentially achieving arbitrary file write on the system subject to filesystem permissions.
Problem types
CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Product status
Any version before 2176b2bbfccfce25ceee08318813f96d843a13fd
Credits
Chia Min Jun Lennon
References
github.com/bytedance/deer-flow/pull/2274
github.com/...ommit/2176b2bbfccfce25ceee08318813f96d843a13fd
www.vulncheck.com/...arbitrary-file-write-via-bootstrap-mode