Junglewise Threat Intelligence

CVE-2026-28518: Volcengine OpenViking path traversal in .ovpack import

CVE-2026-28518 · Severity: high · CVSS 7.8 · Published 2026-03-03

Technologies: openviking (PyPI). Vendors: PyPI.

Executive brief

OpenViking, an open-source tool for managing AI resources, is vulnerable to a security flaw when importing package files (.ovpack). An attacker can create a specially crafted package that, when imported by a user, writes malicious files to sensitive locations on the user's computer. This could allow an attacker to overwrite system files or execute unauthorized code, potentially leading to a full system compromise.

Technical details

A path traversal vulnerability (Zip Slip) exists in OpenViking's '.ovpack' import mechanism. The software fails to properly validate ZIP archive member names, allowing entries to contain traversal sequences (../), absolute paths, or drive prefixes. An attacker can exploit this by providing a malicious archive to a user; when processed, the application will write files outside the intended destination directory using the privileges of the OpenViking process. This can lead to arbitrary file creation or overwriting of critical system files. The issue is fixed in commit 46b3e76.

Affected products

  • Volcengine OpenViking <= 0.2.1

Timeline

  • 2026-02-28: disclosed: Issue reported on GitHub
  • 2026-03-03: advisory: CVE published by VulnCheck/NVD
  • 2026-03-03: patched: Fix commit 46b3e76 released

References

Related threats