CVE-2026-51906
EUVD-2026-9170102.10.2026, 16:16
In TaskingAI v0.3.0 in the DALL-E 3 image generation tool save_url_image function, a path traversal vulnerability allows attackers to write downloaded images to arbitrary locations on the server filesystem by manipulating the project_id parameter.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.