Beveiligingsadvies

CVE-2024-9439

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-03-20 10:10:34
Laatst bijgewerkt 2025-03-20 18:19:47
Toegewezen door @huntr_ai
CVSS-score 8.8
Status PUBLISHED

Beschrijving

SuperAGI is vulnerable to remote code execution in the latest version. The `agent template update` API allows attackers to control certain parameters, which are then fed to the eval function without any sanitization or checks in place. This vulnerability can lead to full system compromise.