Analysis and contextual insights are available on OpenCVE Cloud.
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 06 Oct 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Path Traversal in TaskingAI DALL‑E 3 Image Save Function |
Tue, 06 Oct 2026 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Sun, 04 Oct 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Taskingai
Taskingai taskingai |
|
| Vendors & Products |
Taskingai
Taskingai taskingai |
Fri, 02 Oct 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Path Traversal in TaskingAI DALL‑E 3 Image Save Function | |
| Weaknesses | CWE-22 |
Fri, 02 Oct 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In TaskingAI v0.3.0 in the DALL-E 3 image generation tool save_url_image function, a path traversal vulnerability allows attackers to write downloaded images to arbitrary locations on the server filesystem by manipulating the project_id parameter. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-10-06T02:20:48.408Z
Reserved: 2026-06-08T00:00:00.000Z
Link: CVE-2026-51906
Updated: 2026-10-06T02:20:41.654Z
Status : Deferred
Published: 2026-10-02T16:16:50.207
Modified: 2026-10-06T03:17:02.653
Link: CVE-2026-51906
No data.
OpenCVE Enrichment
Updated: 2026-10-06T05:00:15Z
-
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')