CVE-2026-40503
HKUDS OpenHarness, openharness
OpenHarness prior to commit dd1d235 contains a path traversal vulnerability that allows remote gateway users with chat access to read arbitrary files by supplying path traversal sequences to the /memory show slash command. Attackers can manipulate the path input parameter to escape the project memory directory and access sensitive files accessible to the OpenHarness process without filesystem containment validation.
- CVSS
- 7.1
- EPSS
- 0.41% 34.1% percentile
- CISA KEV
- Not listed
- Published
- 2026.04.16