
DeerFlow patches host bash sandbox escape enabling command execution
CVE-2026-34430 discloses a High-severity sandbox escape in ByteDance `deer-flow` where bash tool validation bypass enables host command execution on deployments before patch commit `92c7a20`.
NewsAI SecurityDeveloper Tools
2 minToday
