CVE-2026-47397: Unsafe Static File Mutation Agent
File manipulation within a static class method may bypass stateful sandbox authorization boundaries, such as workspace permission checks. Ensure file-modifying agent tools are instance methods that explicitly authorize the operation against a configured sandbox.
greprules fetch cve-2026-47397-unsafe-static-file-mutation-agent --engine opengrepDescription
File manipulation within a static class method may bypass stateful sandbox authorization boundaries, such as workspace permission checks. Ensure file-modifying agent tools are instance methods that explicitly authorize the operation against a configured sandbox.
Community feedback
0 rule-level signals from signed-in users.
- Useful reports
- 0
- Context false positives
- 0
- Metadata suggestions
- 0
Contextual precision
Aggregated from approved scan feedback. False-positive reports describe observed scan contexts, not a global rule verdict.
- Findings observed
- 0
- Projects
- 0
- Reporters
- 0
Precision details are collecting more signed-in reports before verdict counts or ratios are emphasized.
No approved finding verdicts yet.
No scan diagnostics reported yet.