chiprook
← Security
SecurityOctober 4, 2026, 07:17

MaxKB's CVSS 10.0 CVE: Patch Fixed Shell Quoting, Not the Approval Gate

On Sep 21 MaxKB, an open-source agent platform on Python, Django and LangChain with ~22,900 GitHub stars, received a CVSS 10.0: the agent's shell tool is not excluded and is missing from interrupt_on, so a prompt injected via ingested knowledge-base content can become command execution. The v2.10.5-lts fix (commit 594f50f2) replaced the string wrapper with shlex parsing and re-quoting, but the approval-gate line in tools.py at that tag still does not name execute. Three sibling CVEs (5.4 and 5.0) remain marked with no patched version.

MaxKB's CVSS 10.0 CVE: Patch Fixed Shell Quoting, Not the Approval Gate
#MaxKB#LangChain#Django
Read next
Security

Critical GitLab flaw CVSS 10.0 exploited in the wild

Security

Dockhand CVE-2026-53988: CVSS 10.0 unauthenticated webhook auth bypass

Security

CVE-2026-75650 in Magento: 132,792 Matches and a 10.0 CVSS

Security

CVSS 10.0 VeloCloud Orchestrator flaw actively exploited