GHSA-chh6-2pfh-pc8wMediumCVSS 4.3

A vulnerability has been found in ag-ui-protocol ag-ui up to 2026-09-07. This issue affects the...

Published
September 28, 2026
Last Modified
September 28, 2026

🔗 CVE IDs covered (1)

📋 Description

A vulnerability has been found in ag-ui-protocol ag-ui up to 2026-09-07. This issue affects the function JSON.parse of the file legacy/convert.ts of the component Middleware. The manipulation leads to uncaught exception. Remote exploitation of the attack is possible. Upgrading to version 2026-09-08 is capable of addressing this issue. The identifier of the patch is 30f8c794d5b73df5c610153043db502b2cc106cc. Upgrading the affected component is recommended.

🔗 References (11)