Vulnerability  ·  2026-09-30

Tencent AI-Infra-Guard skill-scan directory path traversal via startsWith check

VulnerabilityLow impactGlobalCVE-2026-101080
NVD published CVE-2026-101080 (CVSS 4.8) on 2026-09-28. Tencent AI-Infra-Guard's directory-actions path check uses a vulnerable startsWith comparison leading to path traversal in the AI-infrastructure security-scanning tooling; the exploit is publicly known.
AI-Infra-Guard is a security scanner for AI infrastructure; a traversal in its own skill-scan directory tool undercuts the integrity of the scanning tool itself when run against a hostile repository layout — low severity because it requires local access, but it's within the AI-infra tooling surface.
Local attack: the startsWith function in the skill-scan directory tool performs a prefix-based path check (rather than canonical path containment), which can be bypassed to traverse outside the intended directory (path traversal).
Tencent AI-Infra-Guard up to 4.5.2/4.6.2 (skill_scan/tools/dir/dir_actions.py)
Apply a path-containment check using resolved real paths rather than prefix startsWith; update to a patched build from https://github.com/Tencent/AI-Infra-Guard/.
NVD CVE-2026-101080Tencent AI-Infra-Guard repo
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →