Executive brief
EverOS is an AI memory management system. A vulnerability in its data ingestion endpoint allows an unauthenticated attacker to create or overwrite files on the server's filesystem. This could lead to unauthorized data modification or service disruption by corrupting critical system files.
Technical details
A path traversal vulnerability exists in EverOS <= 1.0.0 within the 'POST /api/v1/memory/add' endpoint. The 'sender_id' parameter is used to construct filesystem paths for Markdown storage without proper validation or sanitization. An unauthenticated remote attacker can use '../' sequences in the 'sender_id' field to write or overwrite files outside the intended memory root directory. This results in an arbitrary file write primitive where the file content is partially attacker-controlled. The issue is fixed in version 1.0.1 by implementing a character whitelist for 'sender_id' and a defense-in-depth path containment check.
Affected products
- EverMind-AI everos <= 1.0.0
Timeline
- 2026-06-19: disclosed
- 2026-06-19: advisory: GHSA-c795-2g9c-j48m published
- 2026-06-19: patched: Fixed in version 1.0.1