CVE-2025-48950 MEDIUM

CVE-2025-48950: MaxKB Python Sandbox Bypass in Function Library

Vendor 1Panel-Dev
Product MaxKB
Weakness CWE-276
Published June 3, 2025
Last update June 3, 2025

CVSS base score

5.8/10
Attack vector Network
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:H/E:P

What the vulnerability does

Description

MaxKB is an open-source AI assistant for enterprise. Prior to version 1.10.8-lts, Sandbox only restricts the execution permissions of binary files in common directories, such as `/bin,/usr/bin`, etc. Therefore, attackers can exploit some files with execution permissions in non blacklisted directories to carry out attacks. Version 1.10.8-lts fixes the issue.

Key dates

Disclosure timeline

June 3, 2025 CVE published
June 3, 2025 Record updated