CVE-2026-34172 is a Remote Code Execution (RCE) vulnerability impacting the Giskard open-source Python library, specifically in versions prior to 0.3.4 and 1.0.2b1. The vulnerability arises when the `ChatWorkflow.chat(message)` method processes user input directly as a Jinja2 template in a non-sandboxed environment, allowing an attacker to achieve full RCE via Jinja2 class traversal. Rated with a CVSS score of 7.7 (HIGH), this flaw has a network attack vector, low attack complexity, and requires low privileges, posing a significant risk to affected systems. There is currently no evidence of active exploitation, nor are public exploit codes or significant community discussion available. Organizations using Giskard are advised to upgrade to versions 0.3.4 or 1.0.2b1 to remediate this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 0.3.4CPE matchmatch criteria | cpe:2.3:a:giskard:giskard-agent:*:*:*:*:*:python:*:* | ||
1.0.2CPE matchmatch criteria | cpe:2.3:a:giskard:giskard-agent:1.0.2:alpha1:*:*:*:python:*:* | ||
1.0.1CPE matchmatch criteria | cpe:2.3:a:giskard:giskard-agents:1.0.1:alpha1:*:*:*:python:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.