---
id: CVE-2026-51853
title: >-
  agent-zero 1.7, 1.8, 1.9, and 1.10 is vulnerable to Directory Traversal in
  python/helpers/file_browser.py:FileBrowser.__init__
summary: >-
  agent-zero 1.7, 1.8, 1.9, and 1.10 is vulnerable to Directory Traversal in
  python/helpers/file_browser.py:FileBrowser.__init__. The FileBrowser class
  initializes with the host root directory as the workspace, allowing the agent
  to access…
severity: none
published: '2026-09-30'
updated: '2026-09-30'
sourceUpdated: '2026-09-30T21:17:11.400'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-51853'
references:
  - url: 'https://gist.github.com/Ro1ME/4fe09fc7f94c9c0b10c8b6198a70e920'
    label: cve@mitre.org
  - url: 'https://github.com/agent0ai/agent-zero/issues/1539'
    label: cve@mitre.org
tags:
  - nvd
  - cve.org
ingestedAt: '2026-09-30T21:25:07.841Z'
---

## Overview

agent-zero 1.7, 1.8, 1.9, and 1.10 is vulnerable to Directory Traversal in python/helpers/file_browser.py:FileBrowser.__init__. The FileBrowser class initializes with the host root directory as the workspace, allowing the agent to access any file on the system without restriction.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
