No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Sun, 07 Jun 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in FoundationAgents MetaGPT up to 0.8.2. Affected by this issue is the function check_cmd_exists of the file metagpt/utils/common.py. This manipulation of the argument mermaid.path causes command injection. The attack may be initiated remotely. A high degree of complexity is needed for the attack. The exploitation is known to be difficult. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | FoundationAgents MetaGPT common.py check_cmd_exists command injection | |
| First Time appeared |
Foundationagents
Foundationagents metagpt |
|
| Weaknesses | CWE-74 CWE-77 |
|
| CPEs | cpe:2.3:a:foundationagents:metagpt:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Foundationagents
Foundationagents metagpt |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-07T07:00:12.675Z
Reserved: 2026-06-06T15:53:23.883Z
Link: CVE-2026-11455
No data.
Status : Received
Published: 2026-06-07T09:16:20.403
Modified: 2026-06-07T09:16:20.403
Link: CVE-2026-11455
No data.
OpenCVE Enrichment
Updated: 2026-06-07T09:30:15Z