🔒 Missing workspace boundary validation allows arbitrary file read
Nessuno ha ancora preso questa issue.
Valutazione
- Difficoltà
- 3/5
- Tempo stimato
- 1-2 giorni
- Idoneità per principianti
- 78/100
Direzione di ricerca
Start in rust/crates/runtime/src/file_ops.rs at read_file, then inspect normalize_path and validate_workspace_boundary. Verify that the resolved path is checked against workspace_root before reading, including traversal and symlink escape cases; the issue is done when out-of-workspace reads are rejected while valid workspace reads still work.
Scritto dal modello di indicizzazione a partire dal testo della issue.
Descrizione
🔒 Security · 🟡 Medium · Confidence: 96%
File: rust/crates/runtime/src/file_ops.rs
Location: read_file
What's wrong
The function reads a file path supplied by the caller without checking that it stays inside the intended workspace. The line let absolute_path = normalize_path(path)?; resolves the user‑provided path to an absolute path, but no subsequent call to validate_workspace_boundary is made, so a malicious caller can traverse out of the workspace (e.g., using ../ or symlinks) and read any file the process can access.
Suggested fix
Validate the resolved path against the workspace root before reading the file. For example:
pub fn read_file(
path: &str,
offset: Option<usize>,
limit: Option<usize>,
workspace_root: &Path,
) -> io::Result<ReadFileOutput> {
let absolute_path = normalize_path(path)?;
// Ensure the path stays within the workspace
validate_workspace_boundary(&absolute_path, workspace_root)?;
// ... rest of the function unchanged ...
}
About this report
This finding was generated by an automated audit tool using Llama 3.3 70B + verification passes.
Only findings with ≥92% confidence that passed both LLM self-verification and line reference
verification are reported. False positives are still possible — please verify before acting.
- Lingua principale
- Rust
- Stelle
- 195k
- Fork
- 108k
- Metriche di merge delle PR
- Nessuna PR unita negli ultimi 30g
Preparare l'ambiente
- Include un Dockerfile o un file Docker Compose
- Ha un modello di pull request
- Leggi la guida per i contributori
Come iniziare
- Leggi tutta la issue e poi la guida ai contributi del progetto.
- Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
- Fai un fork del repository e lavora su un branch.
- Apri una pull request che faccia riferimento al numero della issue.
Altre issue di ultraworkers/claw-code
-
Fix markdown formatting issues in TUI streaming: block-level element newline omission and consecutive empty line accumulationForse di nuovo libera @Aditaya08 l’ha presa 51 giorni fa e non c’è nessuna pull request aperta. Aperta
Difficoltà 2/5 1-3 ore Idoneità per principianti 78/100
ultraworkers/claw-code#3259 · 7 commenti ·
-
fix(cli): resolve duplicate assistant text printing after 'Done' in non-compact text modeForse già presa @nankingjing l’ha presa 90 giorni fa. Aperta
Difficoltà 2/5 1-3 ore Idoneità per principianti 72/100
ultraworkers/claw-code#3258 · 1 commento ·
-
bug: Missing newlines before paragraphs and code blocks in streamed Markdown renderingForse già presa @nankingjing l’ha presa 90 giorni fa. Aperta
Difficoltà 2/5 1-3 ore Idoneità per principianti 78/100
ultraworkers/claw-code#3257 · 2 commenti ·
-
[CRITICAL][SECURITY] Untrusted project hooks bypass read-only mode for arbitrary command executionAperta
Difficoltà 4/5 3-5 giorni Idoneità per principianti 68/100
ultraworkers/claw-code#3301 · 4 commenti ·
-
Difficoltà 4/5 3-5 giorni Idoneità per principianti 20/100
ultraworkers/claw-code#3300 · 2 commenti ·
Tutte le issue di ultraworkers/claw-code
Issue simili
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 78/100
pact-foundation/pact-cli#154 ·
I maintainer di solito rispondono entro 3 giorni
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 72/100
antithesishq/bombadil#361 ·
I maintainer di solito rispondono entro 1 giorno
-
test(executor_l0): assert execute() TaskOutcome, not only bus events / 断言 execute() 返回的 TaskOutcomeApertatype:debt
Difficoltà 2/5 1-3 ore Idoneità per principianti 62/100
skaiy/wild_agentos#425 ·
I maintainer di solito rispondono entro 1 giorno
-
Default-import note suggests `import * as process` for velt:process, which does not name the builtinAperta
Difficoltà 2/5 1-3 ore Idoneità per principianti 72/100
I maintainer di solito rispondono entro 1 giorno
-
bug ticket
Difficoltà 2/5 1-3 ore Idoneità per principianti 72/100
cratestack/cratestack#1154 ·
I maintainer di solito rispondono entro 1 giorno