PatchSiren

knowns-dev CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH knowns-dev CVE published 2026-07-21

CVE-2026-30633

A directory traversal vulnerability was found in knowns-dev/knowns 0.11.4. The vulnerability allows attackers to access files outside the intended directory by providing a crafted path value to the get_doc and update_doc tools. This issue has a CVSS score of 7.5 and is classified as HIGH severity. Users of knowns-dev/knowns 0.11.4 should apply patches or mitigations to prevent directory traversal attacks. [truncated]

HIGH knowns-dev CVE published 2026-07-21

CVE-2026-30632

CVE-2026-30632 is a HIGH severity vulnerability in knowns-dev/knowns 0.11.4. A directory traversal vulnerability exists via a crafted folder name value to the create_doc tool. The CVSS score is 7.5, indicating a HIGH severity level. The vulnerability allows attackers to traverse directories, potentially leading to unauthorized access or data exposure. Users of knowns-dev/knowns 0.11.4 should review and ap [truncated]