Vulnerabilities > Agpt > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-09-11 CVE-2024-6091 OS Command Injection vulnerability in Agpt Autogpt 0.5.1
A vulnerability in significant-gravitas/autogpt version 0.5.1 allows an attacker to bypass the shell commands denylist settings.
network
low complexity
agpt CWE-78
critical
9.8
2024-06-06 CVE-2024-1881 Unspecified vulnerability in Agpt Autogpt 0.5.0
AutoGPT, a component of significant-gravitas/autogpt, is vulnerable to an improper neutralization of special elements used in an OS command ('OS Command Injection') due to a flaw in its shell command validation function.
network
low complexity
agpt
critical
9.8