GHSA-v2f8-6655-7grj: Remote Code Execution and Authentication Bypass in vibe-trading-ai
Vulnerability ID: GHSA-V2F8-6655-7GRJ
CVSS Score: 10.0
Published: 2026-10-02
The vibe-trading-ai package prior to version 0.1.7 contains multiple critical security vulnerabilities including unauthenticated remote code execution (RCE) via session message injection, missing authentication on read endpoints, unrestricted file upload, insecure CORS policies, and sensitive key disclosure. Because the application default settings failed open, ran as root within Docker, and bound to all interfaces, remote unauthenticated attackers could compromise host environments containing sensitive trading data.
TL;DR
A critical vulnerability chain in vibe-trading-ai allows unauthenticated remote attackers to execute arbitrary shell commands as root within Docker containers, access historical operational logs, and upload malicious files because of a fail-open authorization design.
⚠️ Exploit Status: POC
Technical Details
- CWE ID: CWE-306, CWE-862, CWE-434, CWE-346, CWE-200
- Attack Vector: Network (Unauthenticated API Request)
- CVSS v3.1 Score: 10.0 (Critical)
- Impact: Remote Code Execution (RCE) / Full System Compromise
- Exploit Status: Proof of Concept (PoC) documented in research
- Docker Default User: root (pre-0.1.7)
Affected Systems
- vibe-trading-ai pip package deployments
- HKUDS Vibe-Trading local and container installations
-
vibe-trading-ai: >= 0.1.0, < 0.1.7 (Fixed in:
0.1.7)
Code Analysis
Commit: 9454d4a
Fix security vulnerabilities including authentication enforcement, secure local network check logic, AST verification on loaded scripts, safe file uploads, and dropping root privileges in the Docker deployment profile.
Mitigation Strategies
- Upgrade vibe-trading-ai to version 0.1.7 or newer to enforce mandatory authentication controls.
- Restrict the FastAPI server port exposure in Docker Compose by binding port 8899 to loopback (127.0.0.1) instead of 0.0.0.0.
- Define a strong, high-entropy secret value for the API_AUTH_KEY environment variable.
- Disable the interactive terminal utility by setting VIBE_TRADING_ENABLE_SHELL_TOOLS=0 in the environment configurations.
Remediation Steps:
- Step 1: Terminate active vulnerable containers and instances.
- Step 2: Update the environment file (.env) to include a high-entropy API_AUTH_KEY value.
- Step 3: Modify docker-compose.yml to change the port mapping line to '127.0.0.1:8899:8899'.
- Step 4: Execute 'pip install --upgrade vibe-trading-ai' to pull the patched codebase.
- Step 5: Rebuild and restart the container stack using 'docker compose up --build -d'.
References
- Vibe-Trading Source Code Repository
- GitHub Security Advisory GHSA-v2f8-6655-7grj
- Vibe-Trading Release v0.1.7 Changes
Read the full report for GHSA-V2F8-6655-7GRJ on our website for more details including interactive diagrams and full exploit analysis.
Top comments (0)