{"id":"CVE-2026-92184","summary":"ag-ui-protocol ag-ui Multimodal Content utils.py urllib.request.urlopen server-side request forgery","details":"A security flaw has been discovered in ag-ui-protocol ag-ui 0.3.0. Affected is the function urllib.request.urlopen of the file integrations/aws-strands/python/src/ag_ui_strands/utils.py of the component Multimodal Content. The manipulation of the argument Value results in server-side request forgery. The attack can be executed remotely. The patch is identified as bf0c34df34cbb4b1992bc37c9bfffe6dd54bb189. It is advisable to implement a patch to correct this issue.","modified":"2026-09-19T03:30:51.138969626Z","published":"2026-09-15T23:30:12.366Z","database_specific":{"cna_assigner":"VulDB","cwe_ids":["CWE-918"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/92xxx/CVE-2026-92184.json"},"references":[{"type":"WEB","url":"https://github.com/ag-ui-protocol/ag-ui/"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/92xxx/CVE-2026-92184.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-92184"},{"type":"ADVISORY","url":"https://vuldb.com/cve/CVE-2026-92184"},{"type":"ADVISORY","url":"https://vuldb.com/submit/934100"},{"type":"ADVISORY","url":"https://vuldb.com/vuln/404437"},{"type":"REPORT","url":"https://github.com/ag-ui-protocol/ag-ui/issues/2432"},{"type":"REPORT","url":"https://vuldb.com/vuln/404437/cti"},{"type":"FIX","url":"https://github.com/ag-ui-protocol/ag-ui/commit/bf0c34df34cbb4b1992bc37c9bfffe6dd54bb189"},{"type":"FIX","url":"https://github.com/ag-ui-protocol/ag-ui/pull/2491"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/ag-ui-protocol/ag-ui","events":[{"introduced":"5dc6e444599117c14a0ae510507cc0dc94618635"},{"fixed":"bf0c34df34cbb4b1992bc37c9bfffe6dd54bb189"}],"database_specific":{"extracted_events":[{"introduced":"0.3.0"},{"last_affected":"0.3.0"}],"source":["AFFECTED_FIELD","REFERENCES"]}}],"versions":["0.3.0","release/2026-08-20","@ag-ui/llamaindex@0.2.0","@ag-ui/crewai@0.0.4","@ag-ui/agno@0.0.6","release/2026-08-18","@ag-ui/ag2@0.0.2","release/2026-08-17","@ag-ui/pydantic-ai@0.0.3","ag-ui-langgraph@0.0.43","@ag-ui/mastra@1.1.2","@ag-ui/langgraph@0.0.43","release/2026-08-16","@ag-ui/langchain@0.0.3","release/2026-08-14","ag_ui_strands@0.3.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-92184.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X"}]}