CVE-2026-37007
A vulnerability in FileWriterTool in crewai-tools <= 1.10.2rc1 allows a remote attacker to achieve code execution via malicious path travers
CVSS
—
No CVSS
EPSS
0.3%
p17
KEV
—
Exploit Today
5
0-100
Published: Aug 27, 2026 · Last modified: Aug 27, 2026
0.3%EPSS · 30 days0.3%
2026-08-282026-08-31
A vulnerability in FileWriterTool in crewai-tools <= 1.10.2rc1 allows a remote attacker to achieve code execution via malicious path traversal sequences in the filename argument.
No related CVEs by CWE or product.