← Volver al buscador de CVEs

CVE-2026-37003

Agno

Descripción

Agno up to and including 2.5.8 is vulnerable to Remote Code Execution (RCE) via prompt injection. The PythonTools and ShellTools components pass unsanitized, LLM-generated arguments directly to execution sinks including exec(), runpy.run_path(), and subprocess.run(). An unauthenticated attacker can exploit this by embedding malicious instructions in content processed by the agent (such as web pages or documents), allowing for arbitrary code and OS command execution on the host server.

EPSS 0.603%Riesgo 0
Ver fuente
Publicación
2026-08-27 20:17:41
Versiones afectadas
<=2.5.8
Tipo
Librería
Última modificación
2026-08-27 20:17:41
Vector
Pending