Metrics
Affected Vendors & Products
Tue, 07 Apr 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Assafelovic
Assafelovic gpt-researcher |
|
| Vendors & Products |
Assafelovic
Assafelovic gpt-researcher |
Mon, 06 Apr 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 06 Apr 2026 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in assafelovic gpt-researcher up to 3.4.3. This impacts an unknown function of the component HTTP REST API Endpoint. Performing a manipulation results in missing authentication. It is possible to initiate the attack remotely. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | assafelovic gpt-researcher HTTP REST API Endpoint missing authentication | |
| Weaknesses | CWE-287 CWE-306 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-04-06T06:45:11.436Z
Updated: 2026-04-06T18:30:24.574Z
Reserved: 2026-04-05T19:12:45.586Z
Link: CVE-2026-5632
Updated: 2026-04-06T18:30:16.683Z
Status : Awaiting Analysis
Published: 2026-04-06T07:16:02.197
Modified: 2026-04-07T13:20:35.010
Link: CVE-2026-5632
No data.