{"data":{"id":"c50e0f88-8141-4964-b6bb-0b6275f76b2c","title":"CVE-2026-108597: Cohere Python SDK 5.11.0 through 7.2.0 contains a path traversal (tar slip) vulnerability in _s3_models_dir_to_tarfile…","summary":"Cohere Python SDK versions 5.11.0 through 7.2.0 contain a path traversal (tar slip) flaw in _s3_models_dir_to_tarfile. Its unvalidated tarfile.extractall calls allow arbitrary file writes. An attacker who can write model archives to the victim's S3 prefix can include absolute paths or ../ members to overwrite files on the SDK host.","solution":"N/A -- no mitigation discussed in source.","labels":["security"],"sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-108597","publishedAt":"2026-10-10T19:16:58.210Z","cveId":"CVE-2026-108597","cweIds":["CWE-22"],"cvssScore":"4.8","cvssSeverity":"medium","severity":"medium","attackType":["supply_chain","other"],"issueType":"vulnerability","affectedPackages":null,"affectedPackageNames":null,"affectedPackageRefs":null,"affectedVendors":["Cohere"],"affectedVendorsRaw":["Cohere Python SDK"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":"Cohere Python SDK path traversal in model archive extraction","headlinePromptVersion":"h1","cvssVector":"CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N","attackVector":"network","attackComplexity":"high","privilegesRequired":"low","userInteraction":"required","exploitMaturity":"unknown","epssScore":0,"epssCheckedAt":"2026-10-11T00:10:11.200Z","kevDateAdded":null,"advisoryAliases":["GHSA-rg44-2cq2-qx25"],"affectedPackagesSource":null,"affectedPackagesCheckedAt":"2026-10-11T00:10:15.337Z","patchAvailable":null,"disclosureDate":"2026-10-10T19:16:58.210Z","capecIds":["CAPEC-126"],"crossRefCount":0,"attackSophistication":"moderate","impactType":["integrity","availability"],"aiComponentTargeted":"api","llmSpecific":false,"classifierConfidence":0.9,"researchCategory":null,"atlasIds":["AML.T0010"]}}