CVE-2026-33234 | Significant-Gravitas AutoGPT up to 0.6.51 email_block.py smtplib.SMTP server-side request forgery (GHSA-4jwj-6mg5-wrwf / CNNVD-202605-4261)
A vulnerability has been found in Significant-Gravitas AutoGPT up to 0.6.51 and classified as critical. This vulnerability affects the function smtplib.SMTP of the file autogpt_platform/backend/backend/blocks/email_block.py. Performing a manipulation results in server-side request forgery.
This vulnerability is identified as CVE-2026-33234. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.