CNNVD-202507-3786 Information

CNNVD ID

CNNVD-202507-3786

CVE-2025-53944

  • CNNVD Published: 2025-07-30

Description (Chinese)

AutoGPT是AutoGPT开源的一个工具。用于让每个人都能使用和构建可访问的AI。 AutoGPT v0.6.15及之前版本存在授权问题漏洞,该漏洞源于授权绕过,可能导致访问任意执行结果。

Description (English)

AutoGPT is a tool to open AutoGPT. Use this to make it possible for everyone to use and build accessable AI. AutoGPT v0.6.15 and earlier versions had a mandate gap, which stemmed from the circumvention of the mandate and could lead to arbitrary implementation of the visit.

Hazard Level

Medium

Vulnerability Type

授权问题

Affected Vendor

AutoGPT

Published

2025-07-30

Last Modified

2026-02-24

References

https://github.com/Significant-Gravitas/AutoGPT/commit/309114a727baa2063357810d444e9a119f8dd7f6 https://github.com/Significant-Gravitas/AutoGPT/releases/tag/autogpt-platform-beta-v0.6.16 https://github.com/Significant-Gravitas/AutoGPT/security/advisories/GHSA-x77j-qg2x-fgg6

Patch

https://github.com/Significant-Gravitas/AutoGPT/releases

Share on: