CVE-2026-51918
Received Received - Intake

Code Injection in FinRobot 1.0.0

Vulnerability report for CVE-2026-51918, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-02

Last updated on: 2026-10-02

Assigner: MITRE

Description

FinRobot 1.0.0 contains code injection in CodingUtils.create_file_with_code ().

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-02
Last Modified
2026-10-02
Generated
2026-10-02
AI Q&A
2026-10-02
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
ai4finance-foundation finrobot 1.0.0

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2026-51918 is a code injection vulnerability in FinRobot 1.0.0. It exists in the CodingUtils.create_file_with_code() method in finrobot/functional/coding.py. The function accepts file paths from LLM tool invocations without validation. When FinRobot's autogen session is exposed via HTTP or an interactive interface, attackers can use prompt injection to manipulate the LLM into invoking this method with paths outside the intended workspace. This allows arbitrary file creation, potentially enabling backdoors, web shells, or malicious scripts in system directories.

Detection Guidance

Check FinRobot logs for suspicious file creation events, especially outside the intended workspace. Look for commands invoking CodingUtils.create_file_with_code with paths containing ../ or absolute paths. Monitor HTTP requests to FinRobot's autogen session for prompt injection attempts.

Impact Analysis

This vulnerability allows attackers to create files anywhere on the system by exploiting prompt injection through FinRobot's interface. Potential impacts include deploying web shells for remote code execution, installing persistent backdoors, or modifying critical system files. Attackers could gain unauthorized access, execute arbitrary commands, or maintain long-term control over the affected system.

Compliance Impact

This vulnerability could lead to unauthorized file creation and potential data breaches, violating GDPR's data protection requirements and HIPAA's security rules for protected health information. It may result in non-compliance due to insufficient access controls, lack of audit trails for file operations, and inadequate protection against arbitrary code execution.

Mitigation Strategies

Disable the CodingUtils.create_file_with_code function if not essential. Implement strict path validation using os.path.normpath and os.path.commonpath to restrict file creation to the intended directory. Filter directory traversal sequences like ../ in user inputs. Update FinRobot to a patched version if available.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-51918. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart