AutoAgent contains an unauthenticated remote code...
Critical severity
Unreviewed
Published
Sep 5, 2026
to the GitHub Advisory Database
Description
Published by the National Vulnerability Database
Sep 5, 2026
Published to the GitHub Advisory Database
Sep 5, 2026
AutoAgent contains an unauthenticated remote code execution vulnerability in the TCP server that binds to all interfaces and executes attacker-supplied commands as root. Attackers can connect to the exposed communication port and execute arbitrary bash commands within the container, gaining access to bind-mounted host workspace directories.
References