GHSA-p8v6-48p4-f4r4HighCVSS 7.6

Incomplete validation of dunder attributes allows an attacker to escape from the Local Python...

Published
September 26, 2026
Last Modified
September 26, 2026

🔗 CVE IDs covered (1)

📋 Description

Incomplete validation of dunder attributes allows an attacker to escape from the Local Python execution environment sandbox, enforced by smolagents. The attack requires a Prompt Injection in order to trick the agent to create malicious code.

🔗 References (4)