All 10 CVE vulnerabilities found in modelscope/agentscope, with AI-generated Chinese analysis, references, and POCs.
Vendor: modelscope
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-8487 | CORS Vulnerability in modelscope/agentscope CWE-346 | 9.1 | - | 2025-03-20 |
| CVE-2024-8556 | Stored XSS in modelscope/agentscope CWE-79 | 5.4 | - | 2025-03-20 |
| CVE-2024-8524 | Directory Traversal in modelscope/agentscope CWE-22 | 7.5 | - | 2025-03-20 |
| CVE-2024-8537 | Path Traversal in modelscope/agentscope CWE-29 | 9.1 | - | 2025-03-20 |
| CVE-2024-8551 | Path Traversal in modelscope/agentscope CWE-23 | 9.8 | - | 2025-03-20 |
| CVE-2024-8438 | Path Traversal in modelscope/agentscope CWE-22 | 7.5 | - | 2025-03-20 |
| CVE-2024-8502 | Remote Code Execution via Deserialization in modelscope/agentscope CWE-502 | 9.8 | - | 2025-03-20 |
| CVE-2024-8489 | CSRF due to overly permissive CORS headers in modelscope/agentscope CWE-352 | 6.5 | - | 2025-03-20 |
| CVE-2024-8501 | Arbitrary File Download in modelscope/agentscope CWE-36 | 8.8 | - | 2025-03-20 |
| CVE-2024-8550 | Local File Inclusion (LFI) in modelscope/agentscope CWE-497 | 7.5 | - | 2025-02-10 |
All 10 known CVE vulnerabilities affecting modelscope/agentscope with full Chinese analysis, references, and POCs where available.