CVE-2025-55149

MEDIUM

Tiny-Scientist <0.1.1 - Path Traversal

Title source: llm
STIX 2.1

Description

Tiny-Scientist is a lightweight framework for automating the entire lifecycle of scientific research—from ideation to implementation, writing, and review. In versions 0.1.1 and below, a critical path traversal vulnerability has been identified in the review_paper function in backend/app.py. The vulnerability allows malicious users to access arbitrary PDF files on the server by providing crafted file paths that bypass the intended security restrictions. This vulnerability allows attackers to: read any PDF file accessible to the server process, potentially access sensitive documents outside the intended directory and perform reconnaissance on the server's file system structure. This issue does not currently have a fix.

References (1)

Core 1

Scores

CVSS v4 6.7
EPSS 0.0013
EPSS Percentile 32.2%
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N/E:U

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-22
Status published
Products (2)
pypi/tiny-scientist 0PyPI
ulab-uiuc/tiny-scientist <= 0.1.1
Published Aug 09, 2025
Tracked Since Feb 18, 2026