PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Nov 19, 2025

Agent-Zero 0.8.0 - 0.9.4 - Arbitrary File Download

Est. Time~10 seconds
Scan TypeGroup Scan
Targetsurl
CostFree
2.9k
Times Used
continuous scan runs
0
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2025-55523
3.5
CVSSlow
Exploitable from an adjacent network · low-privilege account sufficient.

An issue in the component /api/download_work_dir_file.py of Agent-Zero v0.8.* allows attackers to execute a directory traversal.

Attack Vector
Adjacent
Privileges Req.
Low
User Interaction
None
Affected
n/aby n/a
n/a
Updated Sep 9, 2026View on NVD →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

Agent-Zero 0.8.0 - 0.9.4 - Arbitrary File Download Scanner | S4E