Actors
Malware
Campaigns
CVEs
Feed
Blog
Home
/
CVEs
/
CVE-2026-82533
CVE
CVE-2026-82533
View on NVD ↗
DeepSeek Harness < 0.1.2-alpha.1 Authentication Bypass via Host Header Spoofing
MITRE ATT&CK TTPs
2
T1059
Command and Scripting Interpreter
Execution
T1134
Access Token Manipulation
Defense Evasion
Source Articles
DeepSeek Harness Flaw Let AI Agents Disable Their Own File Sandbox Without Approval
A critical vulnerability in DeepSeek Harness, an open-source tool for running AI coding agents, allowed sandboxed agents to disable their own file sandbox by invoking a local web interface without authentication. The flaw, tracked as CVE-2026-82533, enabled an agent to switch its session to 'danger-full-access' mode via a single command, escaping file restrictions and potentially executing commands outside its workspace. The vulnerability affected versions 0.1.1-rc.2 and earlier, with the fix introduced in version 0.1.2-alpha.2, which added one-time token authentication for the local interface. Researchers from OX Research reported the issue, and community members had previously observed the same behavior before official disclosure.
hacker-news
Sep 9, 2026