Skip to content
MediumVulnerability

CVE-2026-108597: Cohere Python SDK path traversal in model archive extraction

Identifier
CVE-2026-108597
Published
Record updated
View JSON
Known exploitation
Not listed in the CISA Known Exploited Vulnerabilities catalog at the last check.

Summary

Cohere Python SDK versions 5.11.0 through 7.2.0 contain a path traversal (tar slip) flaw in _s3_models_dir_to_tarfile. Its unvalidated tarfile.extractall calls allow arbitrary file writes. An attacker who can write model archives to the victim's S3 prefix can include absolute paths or ../ members to overwrite files on the SDK host.

Mitigation

The source does not state a fix yet. Check the original advisory for updates.