CVE-2026-19059

Summary

A vulnerability was determined in FoundationAgents MetaGPT up to 0.8.2. This affects the function read of the file metagpt/tools/libs/editor.py. This manipulation causes path traversal. The attack needs to be launched locally. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

Affected Software

VendorProductVersion RangeStatus
FoundationAgentsMetaGPT0.8.0affected
FoundationAgentsMetaGPT0.8.1affected
FoundationAgentsMetaGPT0.8.2affected

Weaknesses

  • CWE-22: Path Traversal

References