H2O-3GHSA-wj3h-wx8g-x699
H2O has an External Control of File Name or Path vulnerability
Critical9.1CVE-2024-5986 · Published Feb 2, 2026 · updated Jun 29, 2026
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| h2o PyPI | <= 3.46.0.1 | No fix yet |
Details and references
A vulnerability in h2oai/h2o-3 version 3.46.0.1 allows remote attackers to write arbitrary data to any file on the server. This is achieved by exploiting the `/3/Parse` endpoint to inject attacker-controlled data as the header of an empty file, which is then exported using the `/3/Frames/framename/export` endpoint. The impact of this vulnerability includes the potential for remote code execution and complete access to the system running h2o-3, as attackers can overwrite critical files such as private SSH keys or script files.
- CVSS 3.0
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
- Severity from
- GitHub (reviewed advisory)
- Weakness
- CWE-73
- Also known as
- CVE-2024-5986, PYSEC-2026-353
More H2O-3 advisories
All H2O-3| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Apr 23 | A critical remote code execution vulnerability exists in the unauthenticated REST API endpoint /99/ImportSQLTable in H2O-3 version 3.46.0.9 and prior. The vulnerability arises due to insufficient security controls in the parameter blacklist mechanism, which only targets MySQL JDBC driver-specific da CVE-2026-3960Critical9.8fixed in 3.46.0.10 | Critical9.8 | 3.46.0.10 |
| Sep 222025 | H2O affected by a deserialization vulnerability CVE-2025-6544Critical9.8no fix yet | Critical9.8 | No fix yet |
| Mar 202025 | H2O Vulnerable to Arbitrary File Overwrite CVE-2024-8616High8.2no fix yet | High8.2 | No fix yet |
| Mar 202025 | H2O Vulnerable to Denial of Service (DoS) via `HEAD` Request CVE-2024-8062High7.5no fix yet | High7.5 | No fix yet |
| Mar 202025 | H2O Vulnerable to Denial of Service (DoS) via Large GZIP Parsing CVE-2024-7765High7.5no fix yet | High7.5 | No fix yet |
| Mar 202025 | H2O Vulnerable to Denial of Service (DoS) via `/3/ImportFiles` Endpoint CVE-2024-7768High7.5no fix yet | High7.5 | No fix yet |