PT-2026-52846 · Autogpt · Autogpt
CVE-2025-32423
·
Published
2026-06-26
·
Updated
2026-06-29
CVSS v4.0
5.3
Medium
| Vector | AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
AutoGPT versions prior to 0.6.32
Description
AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. A Denial of Service (DoS) issue exists in the
ExtractTextInformationBlock function. An attacker can cause memory exhaustion by providing amplified input; for instance, submitting 10K of content can lead the server to consume 50G of memory, resulting in a system crash.Recommendations
Update to version 0.6.32.
As a temporary workaround, restrict the use of the
ExtractTextInformationBlock function to minimize the risk of exploitation.Exploit
Fix
DoS
Allocation of Resources Without Limits
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Autogpt