CVE-2026-75111

Source
https://cve.org/CVERecord?id=CVE-2026-75111
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-75111.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-75111
Published
2026-08-17T20:36:04Z
Modified
2026-08-22T03:31:06Z
Severity
  • 8.7 (High) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N CVSS Calculator
Summary
Evidently UI Path Traversal via Dataset Materialization Filename
Details

Evidently UI fails to properly validate the filename parameter in the dataset materialization endpoint, allowing unauthenticated attackers to read arbitrary files outside the workspace directory. Attackers can supply traversal sequences or absolute paths in the filename field to access system files, which are then materialized into datasets and retrieved through the download endpoint.

Database specific
{
    "cna_assigner": "VulnCheck",
    "cwe_ids": [
        "CWE-22"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/75xxx/CVE-2026-75111.json"
}
References

Affected packages

Git / github.com/evidentlyai/evidently

Affected ranges

Type
GIT
Repo
https://github.com/evidentlyai/evidently
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last Affected
Database specific
Show details
{
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "last_affected": "0.7.21"
        }
    ],
    "source": "AFFECTED_FIELD"
}

Affected versions

0.*
0.1.18.dev0
0.1.19.dev0
0.1.20.dev0
0.1.22.dev0
0.1.23.dev0
v0.*
v0.1.15.dev0
v0.1.17.dev0
v0.1.25.dev0
v0.1.26.dev0
v0.1.27.dev0
v0.1.28.dev0
v0.1.30.dev0
v0.1.31.dev0
v0.1.32.dev0
v0.1.33.dev0
v0.1.35.dev0
v0.1.39.dev0
v0.1.40.dev0
v0.1.41.dev0
v0.1.42.dev0
v0.1.43.dev0
v0.1.44.dev0
v0.1.45.dev0
v0.1.46.dev0
v0.1.47.dev0
v0.1.48.dev0
v0.1.49.dev0
v0.1.50.dev0
v0.1.51.dev0
v0.1.52.dev0
v0.1.53.dev0
v0.1.54.dev0
v0.1.55.dev0
v0.1.56.dev0
v0.1.57.dev0
v0.1.58.dev0
v0.1.59.dev0
v0.1.59.dev2
v0.2.0
v0.2.1
v0.2.2
v0.2.3
v0.2.4
v0.2.5
v0.2.6
v0.2.7
v0.2.8
v0.3.0
v0.3.1
v0.3.2
v0.3.3
v0.4.0
v0.4.1
v0.4.10
v0.4.11
v0.4.12
v0.4.13
v0.4.14
v0.4.15
v0.4.16
v0.4.17
v0.4.18
v0.4.19
v0.4.2
v0.4.20
v0.4.21
v0.4.22
v0.4.23
v0.4.24
v0.4.25
v0.4.26
v0.4.27
v0.4.28
v0.4.29
v0.4.3
v0.4.30
v0.4.31
v0.4.32
v0.4.33
v0.4.34
v0.4.35
v0.4.36
v0.4.37
v0.4.38
v0.4.39
v0.4.4
v0.4.40
v0.4.5
v0.4.6
v0.4.7
v0.4.8
v0.4.9
v0.5.0
v0.5.1
v0.6.0
v0.6.1
v0.6.2
v0.6.3
v0.6.4
v0.6.5
v0.6.6
v0.6.7
v0.7.0
v0.7.1
v0.7.10
v0.7.11
v0.7.12
v0.7.13
v0.7.14
v0.7.15
v0.7.16
v0.7.17
v0.7.18
v0.7.19
v0.7.2
v0.7.20
v0.7.21
v0.7.3
v0.7.4
v0.7.5
v0.7.6
v0.7.7
v0.7.8
v0.7.9

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-75111.json"