CVE-2026-81837: RooCodeInc Roo-Code ApplyPatchTool ApplyPatchTool.ts path.resolve path traversal
A flaw has been found in RooCodeInc Roo-Code up to 3.51.1. This issue affects the function path.resolve of the file src/core/tools/ApplyPatchTool.ts of the component ApplyPatchTool. This manipulation causes path traversal. It is possible to initiate the attack remotely. The exploit has been published and may be used. Multiple isses were reported to the vendor beforehand. They explain, that "they all apply to Roo Code, a project we no longer support - the repository was archived a while ago, and we don't encourage anyone to use it." This vulnerability only affects products that are no longer supported by the maintainer.
Affected Software
Event History
Frequently Asked Questions
Which deployments are exposed?
RooCodeInc Roo-Code installations up to version 3.51.1 are affected. The maintainer states that Roo Code is no longer supported and its repository has been archived.
Can this be exploited remotely, and does an attacker need prior access?
The attack can be initiated remotely. The supplied severity vector indicates no privileges are required, but user interaction is required.
Is public exploit information available?
Yes. The exploit has been published and may be used.
What should teams do if they still use this software?
Prioritize retiring or replacing Roo Code, since the maintainer no longer supports it. The provided data does not identify a fixed version or a vendor-supported mitigation.