Impact
The vulnerability resides in the SubAgent.run function of the delegate_task tool within cosmicstack-labs Mercury‑Agent. The function does not enforce proper authorization checks, which allows an attacker who can send a specially crafted command to the agent to execute the run routine without the required privileges. This bypass can let the attacker invoke privileged sub‑tasks that were intended to be restricted, potentially exposing or manipulating sensitive data or services that the agent controls.
Affected Systems
The affected vendor is cosmicstack-labs and the product Mercury‑Agent. All releases up to and including version 1.1.12 are vulnerable. Versions newer than 1.1.12 are not known to be affected based on the current information.
Risk and Exploitability
The CVSS score of 5.3 places this vulnerability in the moderate risk category. The EPSS score is not available and the flaw is not listed in CISA KEV, indicating no known widespread exploitation. Nonetheless, the vulnerability can be triggered remotely, meaning an attacker with network access to the Mercury‑Agent delegate_task service could potentially take advantage of the missing authorization checks. No publicly available exploit code was disclosed, but the issue has been made public, so a custom exploit could be created. Given the moderate severity and remote attack vector, organizations should treat this as a medium‑impact risk until an official fix is applied.
OpenCVE Enrichment