{"data":{"id":"19635381-b38c-417f-80b7-3400b9565012","title":"CVE-2026-51884: The /knowledge_base/upload_temp_docs temporary document upload endpoint in Langchain Chatchat 0.3.1 is vulnerable to…","summary":"CVE-2026-51884 affects the /knowledge_base/upload_temp_docs temporary document upload endpoint in Langchain Chatchat 0.3.1. The endpoint is vulnerable to path traversal, and crafted malicious filenames let an attacker write files to arbitrary locations on the server, bypassing the intended restrictions on the temporary directory.","solution":"N/A -- no mitigation discussed in source.","labels":["security"],"sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-51884","publishedAt":"2026-10-01T22:17:03.257Z","cveId":"CVE-2026-51884","cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"high","attackType":["other"],"issueType":"vulnerability","affectedPackages":null,"affectedPackageNames":null,"affectedVendors":[],"affectedVendorsRaw":["Langchain Chatchat 0.3.1"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":"Langchain Chatchat path traversal in /knowledge_base/upload_temp_docs","headlinePromptVersion":"h1","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":"unknown","epssScore":0.00507,"epssCheckedAt":"2026-10-10T03:00:37.847Z","kevDateAdded":null,"advisoryAliases":["GHSA-c869-r44m-5f4w"],"affectedPackagesSource":null,"affectedPackagesCheckedAt":"2026-10-10T03:43:03.748Z","patchAvailable":null,"disclosureDate":"2026-10-01T22:17:03.257Z","capecIds":null,"crossRefCount":0,"attackSophistication":"trivial","impactType":["integrity","confidentiality"],"aiComponentTargeted":"api","llmSpecific":false,"classifierConfidence":0.9,"researchCategory":null,"atlasIds":["AML.T0010"]}}