A security vulnerability has been detected in TinyAGI 0.0.20. Impacted is the function processMessage of the file packages/main/src/index.ts of the component Message API Endpoint. Such manipulation leads to missing authorization. The attack can be launched remotely. The exploit has been disclosed publicly and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Metrics
Affected Vendors & Products
References
History
Thu, 06 Aug 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in TinyAGI 0.0.20. Impacted is the function processMessage of the file packages/main/src/index.ts of the component Message API Endpoint. Such manipulation leads to missing authorization. The attack can be launched remotely. The exploit has been disclosed publicly and may be used. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | TinyAGI Message API Endpoint index.ts processMessage authorization | |
| First Time appeared |
Tinyagi
Tinyagi tinyagi |
|
| Weaknesses | CWE-862 CWE-863 |
|
| CPEs | cpe:2.3:a:tinyagi:tinyagi:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Tinyagi
Tinyagi tinyagi |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-06T07:00:10.542Z
Reserved: 2026-08-05T20:19:56.747Z
Link: CVE-2026-19010
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-06T09:00:11Z