CVE-2026-45023: AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.59, POST /api/blocks/{block_id}/execute endpoint executes blo...

Added to the CISA Known Exploited Vulnerabilities catalog on 28 May 2026. Vendor: AI/ML. Product: artificial intelligence. CVSS score: 5.4.

AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.59, POST /api/blocks/{block_id}/execute endpoint executes blocks without consuming any credits, regardless of the user's balance. The credit check that exists in...

Required action: Review and patch if applicable to your AI infrastructure.