CVE-2026-78250: bytebot-ai bytebot Agent Execution Workflow infinite loop
A vulnerability was identified in bytebot-ai bytebot 0.0.1. The affected element is an unknown function of the component Agent Execution Workflow. Such manipulation leads to infinite loop. The attack may be performed from remote. The exploit is publicly available and might be used. This vulnerability only affects products that are no longer supported by the maintainer.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
The issue can be exploited remotely by an attacker with low-level privileges. No user interaction is required.
What is the operational impact?
Successful manipulation of the affected Agent Execution Workflow can cause an infinite loop, resulting in a low availability impact.
Are supported releases affected?
The vulnerability only affects products that are no longer supported by the maintainer. The provided data identifies bytebot-ai bytebot version 0.0.1 as affected.
How urgent is remediation?
A public exploit is available or may be used, so exposed deployments should be prioritized despite the medium severity rating. The provided data does not identify a patch or workaround.