THREAT OPS › Threat News › [NVD] CVE-2026-80104 (CRITICAL 9.8) — DB-GPT builds the destination path for an uploaded skill from the multipart filename without constraining it to the upload directory. skill_upload in packages/dbgpt-app/src/dbgpt_app/openapi/api_v1/agentic_data_api.py takes file.filename as given and writes the request body to up
[NVD] CVE-2026-80104 (CRITICAL 9.8) — DB-GPT builds the destination path for an uploaded skill from the multipart filename without constraining it to the upload directory. skill_upload in packages/dbgpt-app/src/dbgpt_app/openapi/api_v1/agentic_data_api.py takes file.filename as given and writes the request body to up
CVE-2026-80104 CVSS: 9.8 CRITICAL Published: 2026-08-25T21:18:24.163
DB-GPT builds the destination path for an uploaded skill from the multipart filename without constraining it to the upload directory. skill_upload in packages/dbgpt-app/src/dbgpt_app/openapi/api_v1/agentic_data_api.py takes file.filename as given and writes the request body to upload_dir / filename. A path composed with that ope
MITRE ATT&CK techniques
- CredentialsT1589.001
Indicators of compromise
- CVE-2026-80104cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-80104