KEVIntel
9.8
CVSS
Critical

CVE-2024-5827

PUBLISHED

Arbitrary File Write by Prompt Injection via DuckDB SQL in vanna-ai/vanna

Exploited in the wild Remote Low complexity No user interaction
Vendor
vanna-ai
Product
vanna-ai/vanna
Published
Jun 28, 2024
EPSS

Description

Vanna v0.3.4 is vulnerable to SQL injection in its DuckDB integration exposed to its Flask Web APIs. Attackers can inject malicious SQL training data and generate corresponding queries to write arbitrary files on the victim's file system, such as backdoor.php with contents ``. This can lead to command execution or the creation of backdoors.

nuclei_scanner

CVSS scores

CVSS v3.0 9.8 Critical

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Exploitation status

Exploited in the wild

Recorded 2025-06-26 00:00:00 UTC · Source

SSVC decision points

Exploitation
poc
Automatable
Yes
Technical impact
total

Known exploited vulnerability sources

Catalogues that list this CVE as a known exploited vulnerability.

Source Added
The Shadowserver (via CIRCL) Jun 26, 2025

Scanner integrations

Timeline

  • CVE ID Reserved

  • CVE Published to Public

  • Detected by Nuclei

  • Added to KEVIntel