knowns versions before 0.31.0 fail to properly validate the x-opencode-directory request header in the /api/opencode proxy endpoint. Remote attackers can supply arbitrary directory paths to execute file operations outside the project root on the host system.
Metrics
Affected Vendors & Products
References
History
Thu, 10 Sep 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | knowns versions before 0.31.0 fail to properly validate the x-opencode-directory request header in the /api/opencode proxy endpoint. Remote attackers can supply arbitrary directory paths to execute file operations outside the project root on the host system. | |
| Title | knowns before 0.31.0 External Control of Agent Working Directory via x-opencode-directory Header | |
| Weaknesses | CWE-73 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-09-10T15:28:51.729Z
Updated: 2026-09-10T15:28:51.729Z
Reserved: 2026-09-10T11:28:50.297Z
Link: CVE-2026-88899
No data.
Status : Received
Published: 2026-09-10T16:18:12.120
Modified: 2026-09-10T16:18:12.120
Link: CVE-2026-88899
No data.