composiohq/composio
cpe:2.3:a:composio:composio:*:*:*:*:*:*:*
- 0.4.3
A vulnerability allowing unrestricted file write and read operations has been identified in Composio version 0.4.3. This issue arises from inadequate validation of file paths in the filetools actions, enabling an attacker to manipulate files anywhere on the server. Such exploitation could result in privilege escalation or remote code execution.
Exploitation of this vulnerability could lead to unauthorized file access and modification, with potential consequences of privilege escalation or remote code execution.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.