CVE-2026-81716

openssl_encrypt (pip: openssl-encrypt) versions before 1.4.9 contain a path traversal flaw in PluginSandbox._is_safe_path, which authorized file access using a bare string-prefix match. A sandboxed plugin without the READ_FILES permission could read or write another plugin's directory that merely shares a name prefix (e.g., .../plugins/foobar matching allowed .../plugins/foo), breaking per-plugin isolation within the same user. Fixed by matching each allowed directory exactly or with a trailing path separator.
Configurations

Configuration 1 (hide)

cpe:2.3:a:jahlives:openssl_encrypt:*:*:*:*:*:python:*:*

History

No history.

Information

Published : 2026-08-27 17:21

Updated : 2026-09-02 13:09


NVD link : CVE-2026-81716

Mitre link : CVE-2026-81716

CVE.ORG link : CVE-2026-81716


JSON object : View

Products Affected

jahlives

  • openssl_encrypt
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')