← Back to CVE search

CVE-2026-37007

crewai-tools

Description

A vulnerability in FileWriterTool in crewai-tools <= 1.10.2rc1 allows a remote attacker to achieve code execution via malicious path traversal sequences in the filename argument.

EPSS 0.258%Risk 0
View source
Published
2026-08-27 20:17:41
Affected versions
<=1.10.2rc1
Type
Library
Last modified
2026-08-27 20:17:41
Vector
Pending