A vulnerability was found in handrew browserpilot up to 0.2.51. It has been declared as critical. Affected by this vulnerability is the function GPTSeleniumAgent of the file browserpilot/browserpilot/agents/gpt_selenium_agent.py. The manipulation of the argument instructions leads to code injection. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.
Metrics
Affected Vendors & Products
References
History
Fri, 02 May 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in handrew browserpilot up to 0.2.51. It has been declared as critical. Affected by this vulnerability is the function GPTSeleniumAgent of the file browserpilot/browserpilot/agents/gpt_selenium_agent.py. The manipulation of the argument instructions leads to code injection. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. | |
Title | handrew browserpilot gpt_selenium_agent.py GPTSeleniumAgent code injection | |
Weaknesses | CWE-74 CWE-94 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-02T20:31:06.936Z
Updated: 2025-05-02T20:31:06.936Z
Reserved: 2025-05-02T12:55:47.049Z
Link: CVE-2025-4218

No data.

Status : Received
Published: 2025-05-02T21:15:24.057
Modified: 2025-05-02T21:15:24.057
Link: CVE-2025-4218

No data.