CVE-2026-46345High· 8.4▾ Twilightcompliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the `-o/--output` argument in `trestle author jinja` allows writing files outside the intended workspace. The application does …
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 46.2 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 18.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.2%
Last analysed / modified upstream
0.2% → 0.2%
compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the -o/--output argument in trestle author jinja allows writing files outside the intended workspace. The application does not properly validate, ../, ..\, or absolute paths. This allows arbitrary file write to attacker-controlled locations. Versions 3.12.3 and 4.0.3 patch the issue.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Affected packages:
compliance-trestle >= 4.0.0, < 4.0.3compliance-trestle < 3.12.2Patched in:
compliance-trestle 4.0.3compliance-trestle 3.12.2Connected by shared product, vendor, weakness, or advisory.
CVE-2026-46439High· 7.8compliance-trestle is a tooling platform for managing compliance as code
CVE-2026-45774Mediumcompliance-trestle is a tooling platform for managing compliance as code
CVE-2026-45725Highcompliance-trestle is a tooling platform for managing compliance as code
CVE-2026-54757High· 7.8Trestle has Server-Side Template Injection (SSTI) via Recursive Template Re-evaluation of Untrusted Data
CVE-2026-46380Medium· 6.7compliance-trestle is a tooling platform for managing compliance as code
CVE-2026-52776HighCompliance-trestle (Trestle) is a tooling platform for managing compliance as code