OVERVIEW CVE-2026-6109 affects FoundationAgents MetaGPT versions up to 0.8.1, specifically targeting the evaluateCode function in the Mineflayer HTTP API component (metagpt/environment/minecraft/mineflayer/index.js). This vulnerability enables attackers to perform cross-site request forgery (CSRF) attacks against vulnerable installations. SEVERITY The vulnerability carries a CVSS score of 4.3 (Medium severity) with a network-based attack vector requiring low complexity and no privileges, though user interaction is required. The primary impact is integrity compromise with no confidentiality or availability effects. The FAUCET Risk Score of 38.0/100 indicates moderate concern, while the extremely low EPSS score of 0.000060 suggests limited real-world exploitation likelihood currently. EXPLOITATION STATUS The vulnerability has been publicly disclosed and proof-of-concept exploit code is available. However, there is no active exploitation reported, as indicated by its absence from the Known Exploited Vulnerabilities (KEV) catalog and inactive status on threat tracking lists. The development team was notified early but has not yet responded to the disclosure, leaving patches unavailable at this time.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 0.8.1CPE matchmatch criteria | cpe:2.3:a:deepwisdom:metagpt:*:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.