CVE-2026-51901
Received Received - Intake

Incorrect Access Control in SuperAGI Agent Execution

Vulnerability report for CVE-2026-51901, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-02

Last updated on: 2026-10-02

Assigner: MITRE

Description

SuperAGI up to 0.0.14 is vulnerable to Incorrect Access Control. The agent execution controller endpoint /api/agentexecutions/schedule allows authenticated users from one organization to schedule existing agents belonging to a different organization without proper authorization checks. The endpoint accepts an agent_id parameter but does not verify that the agent belongs to the authenticated user's organization.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-02
Last Modified
2026-10-02
Generated
2026-10-02
AI Q&A
2026-10-02
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 2 associated CPEs
Vendor Product Version / Range
superagi superagi to 0.0.14 (inc)
transformeroptimus superagi to 0.0.14 (inc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2026-51901 is an Incorrect Access Control vulnerability in SuperAGI versions up to 0.0.14. The /api/agentexecutions/schedule endpoint allows authenticated users to schedule agents belonging to other organizations without proper authorization checks. The endpoint accepts an agent_id parameter but does not verify if the agent belongs to the authenticated user's organization, enabling cross-organization agent scheduling.

The flaw stems from insufficient validation in the get_agents_by_project_id function, which checks for project existence but does not enforce organizational boundaries. This allows users to enumerate agents and their operational status across different organizations, potentially exposing sensitive tenant metadata.

Detection Guidance

To detect this vulnerability, monitor API logs for unauthorized access attempts to the /api/agentexecutions/schedule endpoint. Look for requests with modified agent_id parameters from users outside the expected organization. Check agent execution history for unexpected scheduling events across organizations.

Impact Analysis

An attacker could exploit this to schedule agents belonging to other organizations without authorization. This could lead to unauthorized control over victim's agents, allowing potential data access or manipulation. Exploitation does not require error logs and can be performed using tools like Burp Suite or browser developer tools.

Mitigation Strategies

Immediately update SuperAGI to the latest version beyond 0.0.14. Implement strict input validation for the agent_id parameter to ensure it belongs to the authenticated user's organization. Add role-based access control to enforce organizational boundaries for agent scheduling.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-51901. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart