UFO³是Microsoft开源的一个跨设备协作的多智能体任务编排工具。 UFO³ v3.0.0及之前版本存在操作系统命令注入漏洞,该漏洞源于ShellReceiver.run_shell()将动作参数字符串直接传递给subprocess.Popen()使用shell=True和executable=powershell.exe执行,可能导致攻击者通过写入或修改会话JSON文件植入shell动作执行任意命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-46414 | 8.8 HIGH | Microsoft UFO WebSocket role spoofing allows authenticated peer task hijacking |
| CVE-2026-46402 | 8.1 HIGH | Microsoft UFO uses untrusted task_name in log paths, allowing authenticated path traversal |
| CVE-2026-46416 | 6.3 MEDIUM | Microsoft UFO shared WebSocket handler state causes cross-client response hijacking |
| CVE-2026-46538 | 5.9 MEDIUM | Microsoft UFO accepts cross-device TASK_END messages by session_id only, allowing peer tas |
| CVE-2026-46544 | 5.3 MEDIUM | Microsoft UFO reuses client-supplied WebSocket session IDs and replays stale task results |
No comments yet