Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 28 Sep 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in agentverus agentverus-scanner up to 0.8.1. Affected by this vulnerability is the function isSecurityDefenseSkill of the file dist/scanner/analyzers/context.js. Performing a manipulation results in reliance on untrusted inputs in a security decision. The attack must be initiated from a local position. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | agentverus agentverus-scanner context.js isSecurityDefenseSkill reliance on untrusted inputs in a security decision | |
| First Time appeared |
Agentverus
Agentverus agentverus-scanner |
|
| Weaknesses | CWE-20 CWE-807 |
|
| CPEs | cpe:2.3:a:agentverus:agentverus-scanner:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Agentverus
Agentverus agentverus-scanner |
|
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-28T15:45:10.884Z
Reserved: 2026-09-27T18:05:22.967Z
Link: CVE-2026-101079
No data.
Status : Deferred
Published: 2026-09-28T16:17:12.590
Modified: 2026-09-28T16:17:12.763
Link: CVE-2026-101079
No data.
OpenCVE Enrichment
Updated: 2026-09-28T18:00:04Z