CVE-2026-22869 is a critical arbitrary code execution vulnerability affecting Eigent's multi-agent Workforce product. The flaw resides in the CI workflow (.github/workflows/ci.yml), which improperly uses the pull_request_target trigger with untrusted PR code checkout. This allows an attacker with repository write permissions to execute arbitrary code from fork pull requests. Rated 9.8 CRITICAL (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H), this vulnerability is remotely exploitable with low attack complexity, enabling attackers to steal credentials, push code, or create releases. The EPSS score is low, indicating a lower likelihood of exploitation compared to many other CVEs. Currently, there is no known active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this vulnerability. It is not listed in the CISA KEV catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 0.0.78CPE matchmatch criteria | cpe:2.3:a:eigent:eigent:*:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.