CVE-2026-107377 — datamodel-code-generator generates Python data models from schema definitions.
Description
datamodel-code-generator generates Python data models from schema definitions. From 0.59.0 until 0.81.0, an attacker-controlled Protobuf schema can supply absolute or parent-directory paths captured by WEAK_IMPORT_PATTERN and consumed by _write_missing_weak_imports in src/datamodel_code_generator/parser/protobuf.py. Exploitation requires a victim or automated job to process the attacker-controlled schema with Protobuf input support, which requires the grpcio-tools package. The paths escape the weak_imports temporary directory before protoc runs, allowing creation of directory trees and new files or overwrite of existing writable files with a generated Protobuf syntax declaration. The effect persists when later Protobuf compilation fails. The written content is limited to a proto2 or proto3 syntax declaration, and direct arbitrary code execution has not been demonstrated. This issue is fixed in version 0.81.0.
CVSS v3.1 base metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:NHigh severity
Band computed from the CVSS base score, not the source's own label — so it means the same thing across every feed.
AV
Network
Attack Vector
AC
Low
Attack Complexity
PR
None
Privileges Required
UI
None
User Interaction
S
Unchanged
Scope
C
None
Confidentiality
I
High
Integrity
A
None
Availability
Affected
- Vendor
- PyPI
- Product
- datamodel-code-generator
Versions
- pkg:pypi/datamodel-code-generator >= 0.59.0, < 0.81.0
Stated as the source expressed them.
References
- otherOSV webhttps://github.com/datamodel-code-generator/datamodel-code-generator/commit/5e94b8f4203198798ec66b8e48217f70af69a0dc
- otherOSV webhttps://github.com/datamodel-code-generator/datamodel-code-generator/releases/tag/0.81.0
- otherOSV webhttps://github.com/datamodel-code-generator/datamodel-code-generator/security/advisories/GHSA-77xj-x4rm-935c
- advisoryOSV GHSA-77xj-x4rm-935chttps://osv.dev/vulnerability/GHSA-77xj-x4rm-935c
- vendorOSV packagehttps://github.com/datamodel-code-generator/datamodel-code-generator
Related threats
same CWE or vendorCVE-2026-84275 — IBM Guardium Data Protection 12.2 is vulnerable to path traversal in the GIM file-upload functionality.
CVE-2026-84275 · 2h ago
PraisonAI: Prompt-injection defense blocks only when 3+ detector families fire simultaneously; realistic single-vector injections pass through unblocked
CVE-2026-60086 · 3h ago
PraisonAI: API deploy code generator embeds unescaped YAML fields into Python source
CVE-2026-61433 · 3h ago
PraisonAI: Call API localhost-only authentication bypass via spoofed Host header
CVE-2026-61435 · 3h ago
CVE-2026-107378 — CairoSVG is an SVG converter based on Cairo, a 2D graphics library.
CVE-2026-107378 · 4h ago
PraisonAI: ContextGatherer include resolution permits absolute and traversal reads outside the workspace
CVE-2026-61431 · 5h ago