CVE-2024-9439
CVSS 3.0 Score 8.8 of 10 (high)
Details
Published Mar 20, 2025
CWE ID 94
Summary
CVE-2024-9439 is a new vulnerability affecting SuperAGI's latest version. The issue lies in the `agent template update` API, which is susceptible to remote code execution. Attackers can manipulate certain parameters sent to this API, which are then executed using the eval function without proper sanitization or checks. This vulnerability poses a significant risk, as successful exploitation can lead to full system compromise.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.