目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1000 CNY

100.0%

significant-gravitas 厂商漏洞列表 / CVE 中文分析 23

significant-gravitas 厂商相关 23 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。

Significant-Gravitas 是开源安全工具 Aircracker-ng 的维护团队,专注于无线网络破解与安全审计。其核心项目涵盖 Aircrack-ng、Aircrack-ng 等,广泛用于 WEP/WPA 密钥恢复及网络嗅探。历史漏洞多涉及缓冲区溢出、命令注入及权限提升,累计收录 23 条 CVE。该工具在渗透测试领域具高知名度,但因其功能特性,常被用于非法网络入侵,用户需严格合规使用,避免法律风险。

CVE IDタイトルCVSS深刻度公開日
CVE-2026-26020 AutoGPT Affected by Remote Code Execution via Dynamic Module Import in Block Loading (__import__) — AutoGPTCWE-285 8.8AIHighAI2026-02-12
CVE-2026-26006 Redos (Regular Expression Denial of Service) at Code Extraction Block in significant-gravitas/autogpt — AutoGPTCWE-1333 6.5 Medium2026-02-10
CVE-2025-32393 AutoGPT has a DoS vulnerability in ReadRSSFeedBlock — AutoGPTCWE-770 6.5AIMediumAI2026-02-05
CVE-2025-62616 AutoGPT has SSRF vulnerability in SendDiscordFileBlock — AutoGPTCWE-918 8.1AIHighAI2026-02-04
CVE-2025-62615 AutoGPT has SSRF vulnerability in ReadRSSFeedBlock — AutoGPTCWE-918 9.1AICriticalAI2026-02-04
CVE-2026-22038 AutoGPT's API Keys and Secrets Logged in Plaintext in Stagehand Integration Blocks — AutoGPTCWE-532 8.1 High2026-02-04
CVE-2026-24780 AutoGPT is Vulnerable to RCE via Disabled Block Execution — AutoGPTCWE-863 8.8AIHighAI2026-01-29
CVE-2025-53944 AutoGPT Platform Exposes Graph Execution Results via Authorization Gap — AutoGPTCWE-285 7.7 High2025-07-30
CVE-2025-31494 AutoGPT allows cross-user sharing of node execution results through WebSockets API — AutoGPTCWE-200 3.5 Low2025-04-14
CVE-2025-31491 AutoGPT allows leakage of cross-domain cookies and protected headers in requests redirect — AutoGPTCWE-200 8.6 High2025-04-14
CVE-2025-31490 AutoGPT allows SSRF due to DNS Rebinding in requests wrapper — AutoGPTCWE-918 7.5 High2025-04-14
CVE-2024-10457 SSRF Vulnerabilities in significant-gravitas/autogpt — significant-gravitas/autogptCWE-918 9.1 -2025-03-20
CVE-2025-0454 SSRF Check Bypass in Requests Utility in significant-gravitas/autogpt — significant-gravitas/autogptCWE-918 9.1 -2025-03-20
CVE-2025-1040 Server-Side Template Injection (SSTI) in significant-gravitas/autogpt — significant-gravitas/autogptCWE-1336 9.8 -2025-03-20
CVE-2024-8156 Command Injection in significant-gravitas/autogpt — significant-gravitas/autogptCWE-77 8.8 -2025-03-20
CVE-2025-22603 AutoGPT SSRF vulnerability — AutoGPTCWE-918 9.1 -2025-03-10
CVE-2024-6091 Shell Command Denylist Bypass in significant-gravitas/autogpt — significant-gravitas/autogptCWE-78 9.8AICriticalAI2024-09-11
CVE-2024-1880 OS Command Injection in MacOS Text-To-Speech Class in significant-gravitas/autogpt — significant-gravitas/autogptCWE-78 8.8AIHighAI2024-06-06
CVE-2024-1881 Improper Neutralization of Special Elements used in an OS Command in significant-gravitas/autogpt — significant-gravitas/autogptCWE-78 9.8AICriticalAI2024-06-06
CVE-2024-1879 CSRF to RCE in significant-gravitas/autogpt — significant-gravitas/autogptCWE-352 8.8AIHighAI2024-06-06
CVE-2023-37275 System logs spoofable in Auto-GPT via ANSI control sequences — Auto-GPTCWE-117 3.1 Low2023-07-13
CVE-2023-37274 Python code execution sandbox escape in non-docker version in Auto-GPT — Auto-GPTCWE-94 7.6 High2023-07-13
CVE-2023-37273 Docker escape in Auto-GPT when running from docker-compose.yml included in git repo — Auto-GPTCWE-94 8.1 High2023-07-13

本页汇总了 significant-gravitas 厂商截至目前公开的全部 23 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。