What happened
NVD published CVE-2026-101080 (CVSS 4.8) on 2026-09-28. Tencent AI-Infra-Guard's directory-actions path check uses a vulnerable startsWith comparison leading to path traversal in the AI-infrastructure security-scanning tooling; the exploit is publicly known.
Why it matters
AI-Infra-Guard is a security scanner for AI infrastructure; a traversal in its own skill-scan directory tool undercuts the integrity of the scanning tool itself when run against a hostile repository layout — low severity because it requires local access, but it's within the AI-infra tooling surface.
Attack vector
Local attack: the startsWith function in the skill-scan directory tool performs a prefix-based path check (rather than canonical path containment), which can be bypassed to traverse outside the intended directory (path traversal).
Affected systems
Tencent AI-Infra-Guard up to 4.5.2/4.6.2 (skill_scan/tools/dir/dir_actions.py)
Mitigation
Apply a path-containment check using resolved real paths rather than prefix startsWith; update to a patched build from https://github.com/Tencent/AI-Infra-Guard/.