CVE-2026-51914: Transformeroptimus superagi vulnerability
TransformerOptimus SuperAGI v0.0.14 is vulnerable to Incorrect Access Control in the agent template controller. In affected source snapshots, saveagentastemplate and publishtemplate in superagi/controllers/agenttemplate.py accept caller-supplied agentid or agentexecutionid values and do not verify that the referenced agent or execution belongs to the authenticated user's organization.