PT-2026-28690 · Git+2 · Letta
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
letta-ai letta version 0.16.4
Description
A server-side request forgery (SSRF) exists in the File URL Handler component. This occurs when the
ImageContent argument is manipulated within the convert message create to message() function located in the letta/helpers/message helper.py file, allowing for remote attacks.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
As a temporary workaround, restrict the use of the
ImageContent argument within the convert message create to message() function to minimize the risk of exploitation.Exploit
SSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Letta