Security Advisory

CVE-2025-4218

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-05-02 20:31:06
Last updated 2025-05-05 14:55:29
Assigner VulDB
State PUBLISHED

Description

A vulnerability was found in handrew browserpilot up to 0.2.51. It has been declared as critical. Affected by this vulnerability is the function GPTSeleniumAgent of the file browserpilot/browserpilot/agents/gpt_selenium_agent.py. The manipulation of the argument instructions leads to code injection. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.