CVE-2026-37008
CrewAI before fb2323b offers a Python blocklist approach that operates at the wrong level of abstraction, a different vulnerability than CVE-2026-2275. Import-time blocking of module names does not address the availability of Python's complete object graph. For example, calling ctypes.CDLL(None) loads the C library without relying in any import statements. In other words, a within-process sandbox cannot merely account for the import system and instead must account for the complete runtime of the Python interpreter.
Scoring
- Severity
- HIGH
- CVSS base score
- 8.1
- CVSS vector
- CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:L
- EPSS probability
- 0.13%
- CWE
- CWE-424
- Published
- 2026-09-13
- Last modified
- 2026-09-14
Affected products
- CrewAI CrewAI
Weakness type
Related vulnerabilities
- CVE-2024-58136 — Yii 2 before 2.0.52 mishandles the attaching of behavior that is defined by an __class array key, a CVE-2024-4990 regres
- CVE-2025-48827 — vBulletin 5.0.0 through 5.7.5 and 6.0.0 through 6.0.3 allows unauthenticated users to invoke protected API controllers'
- CVE-2023-52952 — A vulnerability has been identified in HiMed Cockpit 12 pro (J31032-K2017-H259) (All versions >= V11.5.1 < V11.6.2), HiM
- CVE-2025-48828 — Certain vBulletin versions might allow attackers to execute arbitrary PHP code by abusing Template Conditionals in the t
- CVE-2024-3459 — KioWare for Windows (versions all through 8.34) allows to escape the environment by downloading PDF files, which then by
- CVE-2025-68939 — Gitea before 1.23.0 allows attackers to add attachments with forbidden file extensions by editing an attachment name via
- CVE-2024-3460 — In KioWare for Windows (versions all through 8.34) it is possible to exit this software and use other already opened app
- CVE-2024-8781 — Container Escape Vulnerability in TR7's Application Security Platform (ASP)