Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-40503

25
FAUCET Score

OpenHarness prior to commit dd1d235 contains a path traversal vulnerability in the /memory show slash command that enables remote gateway users with chat access to read arbitrary files from the system. By supplying path traversal sequences in the path input parameter, attackers can escape the project memory directory and access sensitive files accessible to the OpenHarness process, provided the system lacks filesystem containment validation. The vulnerability has a CVSS severity score of 6.5 (Medium) with a network attack vector, low attack complexity, and requirement for low privileges (user authentication). The primary impact is confidentiality, allowing unauthorized disclosure of sensitive information, while integrity and availability remain unaffected. The EPSS score of 0.00018 indicates this vulnerability is less frequently observed in the wild compared to other disclosed CVEs. This vulnerability is not currently listed on CISA's Known Exploited Vulnerabilities catalog and shows no signs of active exploitation. The vulnerability does not appear to be on any hot lists monitored by the security community, and there is no widely available public exploit code. Organizations using OpenHarness should prioritize upgrading to the patched version at commit dd1d235 or later as part of regular maintenance activities.

Impacted Technologies

VendorProductVersion(s)CPE
< 2026-04-13CPE matchmatch criteria
cpe:2.3:a:hkuds:openharness:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 4.0

7.1HIGH

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Attack Vector
NETWORK
Attack Complexity
LOW
Attack Requirements
NONE
Privileges Required
LOW
User Interaction
NONE
VS Confidentiality
HIGH
VS Integrity
NONE
VS Availability
NONE
SS Confidentiality
NONE
SS Integrity
NONE
SS Availability
NONE
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.41%
Probability of exploitation in next 30 days
EPSS Percentile
33.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0041 is in the 43rd percentile among its peer group of 21,957 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Remediation records are not available for this CVE.

References

github.com / HKUDS/OpenHarness/commit/dd1d235450dd987b20bff01b7bfb02fe8620a0af
Patch
github.com / HKUDS/OpenHarness/pull/127
ExploitIssue Tracking
vulncheck.com / advisories/openharness-path-traversal-information-disclosure-via-memory-show
Third Party Advisory