Devika v1.0 is vulnerable to Directory Traversal in the Coder.save_code_to_project function, which allows attackers to write files outside the intended project workspace.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 02 Oct 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Stitionai
Stitionai devika |
|
| Vendors & Products |
Stitionai
Stitionai devika |
Thu, 01 Oct 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Directory Traversal in Devika's Code Save Function Allows Write Outside Project Workspace | |
| Weaknesses | CWE-22 |
Thu, 01 Oct 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Devika v1.0 is vulnerable to Directory Traversal in the Coder.save_code_to_project function, which allows attackers to write files outside the intended project workspace. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-10-01T21:28:38.277Z
Reserved: 2026-06-08T00:00:00.000Z
Link: CVE-2026-51873
No data.
Status : Received
Published: 2026-10-01T22:17:02.017
Modified: 2026-10-01T22:17:02.017
Link: CVE-2026-51873
No data.
OpenCVE Enrichment
Updated: 2026-10-02T00:00:13Z
Weaknesses