Low severity3.5NVD Advisory· Published Aug 21, 2025· Updated Jun 17, 2026
CVE-2025-55523
CVE-2025-55523
Description
An issue in the component /api/download_work_dir_file.py of Agent-Zero v0.8.* allows attackers to execute a directory traversal.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:agent-zero:agent-zero:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:agent-zero:agent-zero:*:*:*:*:*:*:*:*range: >=0.8,<=0.9.4
- (no CPE)
- (no CPE)range: 0.8.*
Patches
Vulnerability mechanics
References
3- github.com/agent0ai/agent-zero/issues/687nvdExploitIssue TrackingVendor Advisory
- github.com/frdel/agent-zero/blob/v0.8.7/python/api/download_work_dir_file.pynvdProduct
- www.cve.org/CVERecordnvdNot Applicable
News mentions
0No linked articles in our index yet.