VulnerabilityCVE-2026-2286

CVE-2026-2286: CrewAI contains a server-side request forgery vulnerability that enables content acquisition from internal and cloud services, facilitated by the RAG search tools not properly validating URLs provided

NVD/CVE · [email protected]3/30/2026, 4:16:05 PM
View Original Source

Summary

CrewAI contains a server-side request forgery vulnerability that enables content acquisition from internal and cloud services, facilitated by the RAG search tools not properly validating URLs provided at runtime.

Tags

#CVE-2026-2286#cve

Metadata

Article ID
#480434
Source
NVD/CVE
Scraped At
4/1/2026, 6:11:24 AM
URL Hash
17b7505e2dbd28ab…