Skip to content
Noroxi

superagi records

13 published records for vendor superagi.

All records

13 records
  • All versions of `SuperAGI` are vulnerable to Arbitrary Code Execution due to unsafe use of the ‘eval’ function.

    CriticalCVSS 9.8No exploitEPSS 1%

    Jul 22, 2024

  • CVE-2024-9415
    35Monitor

    Path Traversal in transformeroptimus/superagi

    HighCVSS 8.8No exploitEPSS 1%

    superagi · superagiMar 20, 2025

  • CVE-2024-9439
    35Monitor

    Remote Code Execution in transformeroptimus/superagi

    HighCVSS 8.8No exploitEPSS 1%

    superagi · superagiMar 20, 2025

  • IDOR Vulnerability in transformeroptimus/superagi

    HighCVSS 8.8No exploitEPSS 1%

    superagi · superagiMar 20, 2025

  • CVE-2024-9431
    35Monitor

    Improper Privilege Management in transformeroptimus/superagi

    HighCVSS 8.8No exploitEPSS 1%

    superagi · superagiMar 20, 2025

  • CVE-2024-9437
    30Monitor

    Unauthenticated Denial of Service in transformeroptimus/superagi

    HighCVSS 7.5No exploitEPSS 1%

    superagi · superagiMar 20, 2025

  • Information Disclosure in transformeroptimus/superagi

    HighCVSS 7.5No exploitEPSS 1%

    superagi · superagiMar 20, 2025

  • SuperAGI v0.0.13 was discovered to use a hardcoded key for encryption operations.

    HighCVSS 7.5No exploitEPSS 0%

    superagi · superagiNov 16, 2023

  • CVE-2024-9447
    26Monitor

    Exposure of Sensitive Information in transformeroptimus/superagi

    MediumCVSS 6.5No exploitEPSS 1%

    superagi · superagiMar 20, 2025

  • CVE-2024-9418
    26Monitor

    Insufficiently Protected Credentials in transformeroptimus/superagi

    MediumCVSS 6.5No exploitEPSS 1%

    superagi · superagiMar 20, 2025

  • Code Injection in AgentTemplate.eval_agent_config in TransformerOptimus SuperAGI 0.0.14 allows remote attackers to execute arbitrary Python

    MediumCVSS 6.5No exploitEPSS 0%

    superagi · superagiJul 22, 2025

  • Arbitrary File Overwrite (AFO) in superagi.controllers.resources.upload in TransformerOptimus SuperAGI 0.0.14 allows remote attackers to ove

    MediumCVSS 5.0No exploitEPSS 1%

    superagi · superagiJul 22, 2025

  • TransformerOptimus SuperAGI EmailToolKit read_email.py download_attachment path traversal

    LowCVSS 2.0No exploitEPSS 1%

    superagi · superagiJun 19, 2025