CVE-2026-5970 is a code injection vulnerability affecting FoundationAgents MetaGPT up to version 0.8.1, specifically in the check_solution function of the HumanEvalBenchmark and MBPPBenchmark components. The vulnerability allows attackers to manipulate the affected function to execute arbitrary code through injection attacks. The vulnerability carries a HIGH severity rating with a CVSS score of 7.3. It is remotely exploitable over the network without requiring authentication, user interaction, or special privileges, though it does require low attack complexity. The impact encompasses confidentiality, integrity, and availability, meaning successful exploitation could result in unauthorized information disclosure, system modification, and service disruption. The exploit has been publicly disclosed and is now available for active use by potential threat actors. However, the vulnerability currently shows no evidence of active exploitation in the wild, as it is not listed on the Known Exploited Vulnerabilities catalog. Notably, the project maintainers were informed of this issue early through a pull request submission but have not yet responded or released a patch, leaving affected users vulnerable to exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 0.8.1CPE matchmatch criteria | cpe:2.3:a:deepwisdom:metagpt:*:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.