agnoGHSA-vw84-hprm-cxmm
Agno session state overwrites between different sessions/users
High7.1CVE-2025-64168 · Published Oct 31, 2025 · updated Jul 7, 2026
### Impact Under certain conditions (under high concurrency), when `session_state` is passed to an Agent or Team during run or arun calls, a race condition can occur, causing a `session_state` to be assigned and persisted to the incorrect session. This may result in user data from one session being exposed to another user. ### Patches This has been patched in version 2.2.2. Upgrade with `pip install -U agno`.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| agno PyPI | >= 2.0.0, < 2.2.2 | 2.2.2 |
Details and references
More agno advisories
All agno| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| May 29 | agno contains a SQL injection vulnerability | High8.3 | No fix yet |
| Apr 2 | Agno is vulnerable to Eval Injection | Critical | 2.3.24 |