← Database

CVE-2026-79408

CRITICAL CVSS: 9.8 Published: 2026-08-31 Modified: 2026-09-01

Description

An OS command injection vulnerability in MetaGPT 0.8.1 allows an attacker to execute arbitrary commands via the path argument of RepoParser.rebuild_class_views() in metagpt/repo_parser.py.

Affected Platforms

Unknown

Weakness Type

CWE-78

References