CVE-2026-101131: deepseek-ai deepseek-harness dsh index.ts reliance on untrusted inputs in a security decision
A vulnerability was identified in deepseek-ai deepseek-harness up to 0.1.5-rc.3. Impacted is an unknown function of the file packages/e2b/e2b/src/index.ts of the component dsh. The manipulation of the argument E2BAPIKEY leads to reliance on untrusted inputs in a security decision. Local access is required to approach this attack. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
Who is realistically exposed to this issue?
Exposure is limited to installations of deepseek-ai deepseek-harness up to version 0.1.5-rc.3 where the dsh component uses the affected packages/e2b/e2b/src/index.ts code. Exploitation requires local access.
What does an attacker need to exploit it?
An attacker needs local access and the ability to manipulate the E2B_API_KEY argument. The issue stems from using that untrusted input in a security decision.
Is public exploit code available?
Yes. Publicly available exploit material has been reported, which may make the issue easier to use where the local-access prerequisite is met.