---
id: CVE-2026-51882
title: >-
  The OpenAI-compatible file upload endpoint `/v1/files` in Langchain-Chatchat
  0.3.0 is vulnerable to path traversal
summary: >-
  The OpenAI-compatible file upload endpoint `/v1/files` in Langchain-Chatchat
  0.3.0 is vulnerable to path traversal. An attacker can write files to
  arbitrary locations outside the `openai_files` directory by crafting malicious
  filenames.
severity: none
published: '2026-10-01'
updated: '2026-10-01'
sourceUpdated: '2026-10-01T22:17:03.003'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-51882'
references:
  - url: 'https://gist.github.com/Ro1ME/f80ac458836b59adb9c6ceff3993f7f3'
    label: cve@mitre.org
  - url: 'https://github.com/chatchat-space/Langchain-Chatchat/issues/5468'
    label: cve@mitre.org
tags:
  - nvd
  - cve.org
ingestedAt: '2026-10-01T23:03:32.775Z'
---

## Overview

The OpenAI-compatible file upload endpoint `/v1/files` in Langchain-Chatchat 0.3.0 is vulnerable to path traversal. An attacker can write files to arbitrary locations outside the `openai_files` directory by crafting malicious filenames.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
