ZDI-26-027: (0Day) Foundation Agents MetaGPT actionoutput_str_to_mapping Code Injection Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foundation Agents MetaGPT. Authentication is not required to exploit this vulnerability. The specific flaw exists within the actionoutputstrtomapping function. The issue results from the lack of proper validation of a user-supplied string before using it to execute Python code. An attacker can leverage this vulnerability to execute code in the context of the service account.
Other sources
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foundation Agents MetaGPT. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 9.8. The following CVEs are assigned: CVE-2026-0761.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-26-027?
The ZDI-26-027 vulnerability has a CVSS rating of 9.8, indicating a critical security risk.
How do I fix ZDI-26-027?
To mitigate ZDI-26-027, you should update Foundation Agents MetaGPT to the latest version that addresses this vulnerability.
Who can exploit ZDI-26-027?
ZDI-26-027 can be exploited by remote attackers without requiring authentication.
What type of vulnerability is ZDI-26-027?
ZDI-26-027 is a remote code execution vulnerability affecting Foundation Agents MetaGPT.
What are the potential impacts of ZDI-26-027?
Successful exploitation of ZDI-26-027 can lead to arbitrary code execution on affected systems.