Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 06 Aug 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in TinyAGI 0.0.20. Impacted is the function processMessage of the file packages/main/src/index.ts of the component Message API Endpoint. Such manipulation leads to missing authorization. The attack can be launched remotely. The exploit has been disclosed publicly and may be used. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | TinyAGI Message API Endpoint index.ts processMessage authorization | |
| First Time appeared |
Tinyagi
Tinyagi tinyagi |
|
| Weaknesses | CWE-862 CWE-863 |
|
| CPEs | cpe:2.3:a:tinyagi:tinyagi:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Tinyagi
Tinyagi tinyagi |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-06T07:00:10.542Z
Reserved: 2026-08-05T20:19:56.747Z
Link: CVE-2026-19010
No data.
No data.
No data.
OpenCVE Enrichment
No data.