WhisperX tag archive

#aos

This page collects WhisperX intelligence signals tagged #aos. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-03-28 10:27:02 · GitHub Issues

1. Critical Path Traversal in aos-workspace MCP Server Exposes Full Filesystem Read

A critical path traversal vulnerability in the `aos-workspace` MCP server allows any authenticated client to read arbitrary files from the host's entire filesystem. The flaw, located in the `index.js` file, stems from a failure to validate that a resolved file path remains within the intended workspace root directory (...