Browse all 4 CVE security advisories affecting omnigent-ai. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-62675 | Omnigent: Uploaded Agent Bundle Allows Authenticated Runner RCE via Python Callable Tools — omnigent CWE-94 | 8.8 | High | 2026-08-21 |
| CVE-2026-62674 | Omnigent: Shared Agent Bundle Overwrite Leads to Authenticated Runner RCE — omnigent CWE-94 | 9.0 | Critical | 2026-08-21 |
| CVE-2026-62677 | Omnigent: Unvalidated os_env.cwd in agent bundle yields arbitrary host filesystem access on runners without OMNIGENT_RUNNER_WORKSPACE — omnigent CWE-22 | 8.8 | High | 2026-08-21 |
| CVE-2026-62676 | Omnigent Guardrail policy bypass: shell-command parser fails open in policies/builtins/_shell.py — omnigent CWE-184 | 7.1 | High | 2026-08-21 |
This page lists every published CVE security advisory associated with omnigent-ai. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.