CVE-2026-5584

A vulnerability has been found in Fosowl agenticSeek 0.1.0. Impacted is the function PyInterpreter.execute of the file sources/tools/PyInterpreter.py of the component query Endpoint. Such manipulation leads to code injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
References
Link Resource
https://github.com/August829/CVEP/issues/29 Issue Tracking
https://vuldb.com/submit/784052 Third Party Advisory VDB Entry
https://vuldb.com/vuln/355383 Third Party Advisory VDB Entry
https://vuldb.com/vuln/355383/cti Permissions Required VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:fosowl:agenticseek:0.1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-04-05 17:16

Updated : 2026-07-24 20:10


NVD link : CVE-2026-5584

Mitre link : CVE-2026-5584

CVE.ORG link : CVE-2026-5584


JSON object : View

Products Affected

fosowl

  • agenticseek
CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

CWE-94

Improper Control of Generation of Code ('Code Injection')