PT-2026-36858 · Pptagent · Pptagent
Koukyosyumei
·
Published
2026-05-04
·
Updated
2026-05-05
·
CVE-2026-42080
CVSS v3.1
4.6
Medium
| Vector | AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
PPTAgent versions prior to commit 418491a
Description
An arbitrary file write issue exists in this agentic framework for reflective PowerPoint generation. The flaw occurs through the
save generated slides() function.Recommendations
Update to commit 418491a or a newer version.
As a temporary workaround, restrict the use of the
save generated slides() function.Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Pptagent