CVE-2026-2285
Description
AI Translation Available
CrewAI contains a arbitrary local file read vulnerability in the JSON loader tool that reads files without path validation, enabling access to files on the server.
https://www.kb.cert.org/vuls/id/221883