CVE-2026-22218

Chainlit versions prior to 2.9.4 contain an arbitrary file read vulnerability in the /project/element update flow. An authenticated client can send a custom Element with a user-controlled path value, causing the server to copy the referenced file into the attacker’s session. The resulting element identifier (chainlitKey) can then be used to retrieve the file contents via /project/file/<chainlitKey>, allowing disclosure of any file readable by the Chainlit service.
Configurations

Configuration 1 (hide)

cpe:2.3:a:chainlit:chainlit:*:*:*:*:*:*:*:*

History

17 Jun 2026, 10:19

Type Values Removed Values Added
Summary
  • (es) Las versiones de Chainlit anteriores a la 2.9.4 contienen una vulnerabilidad de lectura arbitraria de archivos en el flujo de actualización de /project/element. Un cliente autenticado puede enviar un Element personalizado con un valor de ruta controlado por el usuario, haciendo que el servidor copie el archivo referenciado en la sesión del atacante. El identificador de elemento resultante (chainlitKey) puede usarse entonces para recuperar el contenido del archivo a través de /project/file/, permitiendo la divulgación de cualquier archivo legible por el servicio Chainlit.

02 Feb 2026, 20:56

Type Values Removed Values Added
References () https://github.com/Chainlit/chainlit/releases/tag/2.9.4 - () https://github.com/Chainlit/chainlit/releases/tag/2.9.4 - Product, Release Notes
References () https://www.vulncheck.com/advisories/chainlit-arbitrary-file-read-via-project-element - () https://www.vulncheck.com/advisories/chainlit-arbitrary-file-read-via-project-element - Third Party Advisory
References () https://www.zafran.io/resources/chainleak-critical-ai-framework-vulnerabilities-expose-data-enable-cloud-takeover - () https://www.zafran.io/resources/chainleak-critical-ai-framework-vulnerabilities-expose-data-enable-cloud-takeover - Exploit, Mitigation, Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CPE cpe:2.3:a:chainlit:chainlit:*:*:*:*:*:*:*:*
First Time Chainlit
Chainlit chainlit

20 Jan 2026, 19:15

Type Values Removed Values Added
References
  • () https://www.zafran.io/resources/chainleak-critical-ai-framework-vulnerabilities-expose-data-enable-cloud-takeover -

20 Jan 2026, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-20 00:15

Updated : 2026-07-14 16:16


NVD link : CVE-2026-22218

Mitre link : CVE-2026-22218

CVE.ORG link : CVE-2026-22218


JSON object : View

Products Affected

chainlit

  • chainlit
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')