Impact
The vulnerability resides in the SuperAGI agent template controller, where the save_agent_as_template and publish_template actions accept agent_id or agent_execution_id parameters supplied by the caller without verifying that the referenced agent or execution belongs to the caller’s organization. This flaw permits an authenticated user to create or publish templates for agents they do not own, potentially exposing privileged data and operations to other organizational units.
Affected Systems
TransformerOptimus SuperAGI, version 0.0.14 (and any source snapshots that have not been patched). No other products or vendors are listed as affected.
Risk and Exploitability
The EPSS score is not available and the vulnerability is not listed in CISA’s KEV catalog, so real‑time exploitation data is limited. The likely attack vector is remote, via the SuperAGI HTTP API endpoints that expose the controller. An attacker with valid authentication can supply arbitrary agent identifiers to the API, thereby creating or publishing templates on behalf of other organizations. The CVSS score is not specified, but the improper access control could lead to data leakage or unauthorized configuration changes. Without an official fix, the risk remains moderate to high for environments where multiple organizations share a SuperAGI instance.
OpenCVE Enrichment