{"id":"CVE-2026-75859","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-75859","summary":"CodeWhale versions before 0.8.64 fail to validate file paths in the project config instructions field, allowing attackers to read arbitrary files on the victim's system. A malicious…","details":"CodeWhale versions before 0.8.64 fail to validate file paths in the project config instructions field, allowing attackers to read arbitrary files on the victim's system. A malicious .codewhale/config.toml file in a cloned repository can specify paths outside the workspace that are read and injected into the AI system prompt for exfiltration.","published":"2026-08-18T16:18:21.787","modified":"2026-08-18T16:18:21.787","cvss":{"score":7.5,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[],"fix":{"url":"https://github.com/Hmbown/CodeWhale/commit/43563356b98c6b993085554da82e77370160a31c","label":"Hmbown/CodeWhale@4356335"},"references":[{"type":"WEB","url":"https://github.com/Hmbown/CodeWhale/commit/43563356b98c6b993085554da82e77370160a31c"},{"type":"WEB","url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-62f5-cp2p-vq95"},{"type":"WEB","url":"https://www.vulncheck.com/advisories/codewhale-before-arbitrary-file-read-via-instructions"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-08-18T16:18:21.787"}}