haystack-ai is vulnerable to Path Traversal
59
Medium Risk
The FileSystemToolResultStore component persists tool results on the local file system and later retrieves them by reference. Its read path does not constrain resolved references to the configured store root, so a reference containing path traversal segments can resolve outside that directory. When the reference is influenced by untrusted input, this allows reading arbitrary files the process can access. The fix hardens the read path so it only resolves references that stay within the configured store root.
You are affected if you are using a version that falls within the vulnerable range and you use FileSystemToolResultStore to read tool results whose reference can be influenced by untrusted input.
haystack-ai is vulnerable to Path Traversal in versions 3.0.0 - 3.0.0.
Upgrade the haystack-ai library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.