AutoForgeAI/autoforge

AutoForgeAI/autoforge

Releases3
Frequency9 hours
Last Release
Stars1.75K

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH

A path traversal vulnerability in the UI/static component of leonvanzyl autocoder commit 79d02a allows attackers to read arbitrary files via sending crafted URL path containing traversal sequences.

9.8 CRITICAL

A remote code execution (RCE) vulnerability in the /devserver/start endpoint of leonvanzyl autocoder commit 79d02a allows attackers to execute arbitrary code via providing a crafted command parameter.