Skip to content

FoundationAgents vulnerabilities

3 CVEs tracked

FoundationAgents' MetaGPT product appears in our reports with several critical vulnerabilities exploitable locally. The main themes are code injection and path traversal attacks, all of which have publicly available exploits. Defenders should take immediate action against these vulnerabilities tracked as CVE-2026-19058, CVE-2026-19059, and CVE-2026-19060, particularly by restricting local access and isolating versions up to 0.8.2.

Azərbaycanca: FoundationAgents şirkətinin MetaGPT məhsulu hesabatlarımızda yerli istismar oluna bilən bir sıra kritik zəifliklərlə bağlı qeyd olunur. Əsas mövzular kod inyeksiyası və yol keçidi (path traversal) hücumlarıdır ki, bunların hamısı üçün açıq istismar kodları mövcuddur. Müdafiəçi CVE-2026-19058, CVE-2026-19059 və CVE-2026-19060 identifikatorları ilə izlənən bu zəifliklərə qarşı təcili tədbirlər görməli, xüsusilə də lokal giriş imkanlarını məhdudlaşdırmalı və 0.8.2 və daha əvvəlki versiyaları təcrid etməlidir.

This vendor's CVEs3

This hub is built from skopnix's own reporting on FoundationAgents: the overview is AI-written from that coverage and every CVE links to its grounded explainer. KEV status comes from CISA's Known Exploited Vulnerabilities catalog and EPSS from FIRST — vendor, version and score details are never invented.