GHSA-3prr-pcv3-5chgLowCVSS 2.8
A vulnerability was found in agentverus agentverus-scanner up to 0.8.1. Affected by this...
🔗 CVE IDs covered (1)
📋 Description
A vulnerability was found in agentverus agentverus-scanner up to 0.8.1. Affected by this vulnerability is the function isSecurityDefenseSkill of the file dist/scanner/analyzers/context.js. Performing a manipulation results in reliance on untrusted inputs in a security decision. The attack must be initiated from a local position. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet.
🔗 References (8)
- https://nvd.nist.gov/vuln/detail/CVE-2026-101079
- https://github.com/agentverus/agentverus-scanner/issues/28
- https://github.com/agentverus/agentverus-scanner
- https://vuldb.com/cve/CVE-2026-101079
- https://vuldb.com/submit/931274
- https://vuldb.com/vuln/410950
- https://vuldb.com/vuln/410950/cti
- https://github.com/advisories/GHSA-3prr-pcv3-5chg