CVE-2025-61165

Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.

An arbitrary file upload vulnerability in the /v1/my_drive/batch_upload component of cohere North AI v1.1.5 allows attackers to exeute arbitrary code via uploading a crafted file.

Published 2026-08-26. Last modified 2026-09-03.