Sunday, 13 September 2026
8 agent hacks today 7 vs yesterday (1)

Two CVEs in awesome-llm-apps agents: path traversal and cross-session token leak

Two vulnerabilities were disclosed in the awesome-llm-apps project (commit e46690f, 2026-01-19): an unauthenticated path traversal in the Beifong AI News and Podcast Agent's FastAPI stream-audio endpoint allowing arbitrary file reads, and a cross-session information disclosure in the Streamlit-based GitHub MCP Agent that stores user API tokens in process-wide environment variables. Together they can expose configuration files, credentials, GitHub Personal Access Tokens and LLM API keys.

Occurred 19 January 2026 · Disclosed 27 March 2026 · Record updated 13 September 2026

Impact

Unauthenticated remote attackers could read arbitrary server files and retrieve other users' GitHub Personal Access Tokens and LLM API keys, potentially enabling unauthorized access to private resources and financial abuse.

Our coverage

No articles linked to this incident yet.

Sources

  1. nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2026-29871
  2. nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2026-29872