Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-5971

27
FAUCET Score

CVE-2026-5971 is a code injection vulnerability affecting FoundationAgents MetaGPT versions up to 0.8.1, specifically in the XML Handler component's ActionNode.xml_fill function within metagpt/actions/action_node.py. The flaw allows improper neutralization of directives in dynamically evaluated code, which could enable attackers to inject and execute arbitrary code. This vulnerability has remote attack potential and requires no authentication or user interaction. The vulnerability carries a CVSS v3.1 score of 7.3 (HIGH) with a network-based attack vector, low complexity, and no privilege or user interaction requirements. Successful exploitation could result in confidentiality, integrity, and availability impacts, allowing attackers to compromise affected systems with relative ease. The EPSS score of 0.00068 indicates this threat is below average relative to other known vulnerabilities, though this may change as adoption increases. Exploit code has been publicly released and the vulnerability is technically exploitable in real-world scenarios. However, the vulnerability is not currently on active exploitation lists (KEV or Hot List status), suggesting limited real-world abuse at this time. The development team was notified early through a pull request but has not yet responded with a patch, leaving affected users vulnerable and dependent on manual mitigation measures until an official fix is released.

Impacted Technologies

VendorProductVersion(s)CPE
<= 0.8.1CPE matchmatch criteria
cpe:2.3:a:deepwisdom:metagpt:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 4.0

5.5MEDIUM

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Attack Vector
NETWORK
Attack Complexity
LOW
Attack Requirements
NONE
Privileges Required
NONE
User Interaction
NONE
VS Confidentiality
LOW
VS Integrity
LOW
VS Availability
LOW
SS Confidentiality
NONE
SS Integrity
NONE
SS Availability
NONE
Exploit Maturity
PROOF_OF_CONCEPT
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.39%
Probability of exploitation in next 30 days
EPSS Percentile
31.4%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0039 is in the 8th percentile among its peer group of 36,897 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

pipGHSA-3ghp-8r47-4gj4medium

FoundationAgents MetaGPT vulnerable to eval injection

Apr 9, 2026

References

github.com / FoundationAgents/MetaGPT
Product
github.com / FoundationAgents/MetaGPT/issues/1928
ExploitIssue Tracking
github.com / FoundationAgents/MetaGPT/issues/1956
Issue Tracking
vuldb.com / submit/791734
ExploitThird Party AdvisoryVDB Entry
vuldb.com / vuln/356525
Third Party AdvisoryVDB Entry
vuldb.com / vuln/356525/cti
Permissions RequiredVDB Entry