CVE-2026-2285
EUVD-2026-1711930.03.2026, 16:16
CrewAI contains a arbitrary local file read vulnerability in the JSON loader tool that reads files without path validation, enabling access to files on the server.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.
References