CVE-2025-1040
Last modified
CVE-2025-1040 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. AutoGPT versions 0.3.4 and earlier are vulnerable to a Server-Side Template Injection (SSTI) that could lead to Remote Code Execution (RCE). The vulnerability arises from the improper handling of user-supplied format strings in the `AgentOutputBlock` implementation, where malicious input is passed to the Jinja2 templating engine without adequate security measures. EPSS estimates a 1.52% chance of exploitation in the next 30 days.
Description
AutoGPT versions 0.3.4 and earlier are vulnerable to a Server-Side Template Injection (SSTI) that could lead to Remote Code Execution (RCE). The vulnerability arises from the improper handling of user-supplied format strings in the `AgentOutputBlock` implementation, where malicious input is passed to the Jinja2 templating engine without adequate security measures. Attackers can exploit this flaw to execute arbitrary commands on the host system. The issue is fixed in version 0.4.0.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Agpt | Autogpt Platform | < 0.4.0 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2025-1040?
How severe is CVE-2025-1040?
How do I fix CVE-2025-1040?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-10394A vulnerability has been found in fcba_zzm ics-park Smart Pa…7.2
- CVE-2025-10395A vulnerability was found in Magicblack MacCMS 2025.1000.405…7.2
- CVE-2025-10396A vulnerability was determined in SourceCodester Pet Groomin…9.8
- CVE-2025-10397A vulnerability was identified in Magicblack MacCMS 2025.100…7.2
- CVE-2025-10398A security flaw has been discovered in fcba_zzm ics-park Sma…8.8
- CVE-2025-10399A weakness has been identified in Korzh EasyQuery up to 7.4.…6.3
- CVE-2025-10400A security vulnerability has been detected in SourceCodester…8.8
- CVE-2025-10401A vulnerability was detected in D-Link DIR-823x up to 250416…8.8
- CVE-2025-10402A flaw has been found in PHPGurukul Beauty Parlour Managemen…9.8
- CVE-2025-10403A vulnerability has been found in PHPGurukul Beauty Parlour …9.8
- CVE-2025-10404A vulnerability was found in itsourcecode Baptism Informatio…9.8
- CVE-2025-10405A vulnerability was determined in itsourcecode Baptism Infor…9.8
Are you affected by CVE-2025-1040?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
