CyberRota Analysis
AI-GeneratedA path traversal vulnerability in Agno's PythonTools allows attackers to manipulate the file_name argument to read, write, or execute arbitrary files on the system. By injecting parent-directory traversal sequences, an attacker can bypass directory restrictions and access sensitive files or execute malicious code with the privileges of the process user. Organizations using Agno's PythonTools should prioritize patching this vulnerability to mitigate the risk of unauthorized file access and code execution.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Agno's PythonTools in libs/agno/agno/tools/python.py contains a path traversal vulnerability that allows attackers to read, write, or execute arbitrary files by supplying parent-directory traversal sequences in the file_name argument passed to read_file, save_to_file, or run_python_file tool actions. Attackers can inject traversal sequences such as '../../../../../../etc/passwd' through direct tool invocation or via prompt injection embedded in agent-processed content to escape the intended base_dir boundary and achieve arbitrary file read, arbitrary file write, or arbitrary Python code execution within the process user's authority.