agentscopeGHSA-6mf6-7j75-2m6f
AgentScope stored cross-site scripting (XSS) vulnerability
Medium6.1CVE-2024-8556 · Published Mar 20, 2025 · updated Jul 7, 2026
A stored cross-site scripting (XSS) vulnerability exists in modelscope/agentscope, as of the latest commit 21161fe on the main branch. The vulnerability occurs in the view for inspecting detailed run information, where a user-controllable string (run ID) is appended and rendered as HTML. This allows an attacker to execute arbitrary JavaScript code in the context of the user's browser.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| agentscope PyPI | <= 0.1.1 | No fix yet |
Details and references
- CVSS 3.0
- CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
- Severity from
- GitHub (reviewed advisory)
- Weakness
- CWE-79
- Also known as
- CVE-2024-8556, PYSEC-2026-1076
More agentscope advisories
All agentscope| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Mar 202025 | AgentScope directory traversal vulnerability in /read-examples | High7.5 | No fix yet |
| Mar 202025 | AgentScope Cross-Origin Resource Sharing (CORS) vulnerability | High7.4 | No fix yet |
| Mar 202025 | AgentScope Deserialization Vulnerability | Critical9.8 | No fix yet |
| Mar 202025 | AgentScope path traversal vulnerability | Critical9.1 | No fix yet |
| Mar 202025 | AgentScope Path Traversal in /api/file | High7.5 | No fix yet |
| Mar 202025 | AgentScope path traversal vulnerability in save-workflow | Critical9.1 | No fix yet |