Skip to main content

CVE detail

CVE-2026-41679

Paperclip is a Node.js server and React UI that orchestrates a team of AI agents to run a business. Prior to version 2026.416.0, an unauthenticated attacker can achieve full remote code execution on any network-accessible Paperclip instance running in `authenticated` mode with default configuration. No user interaction, no credentials, just the target's address. The chain consists of six API calls. The attack is fully automated, requires no user interaction, and works against the default deployment configuration. Version 2026.416.0 patches the issue.

CVSS 10.0 · CriticalBuzz score 35.9

Buzz score

Why this CVE is surfacing

Buzz score total 35.9

This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.

Buzz score components · mention 17.9 · diversity 18.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Mention score
17.9
5 evidence mentions in the snapshot
Diversity score
18.0
5 sources across 3 categories
KEV score
0.0
No KEV entry observed
OTX score
0.0
0 OTX pulses
PoC score
0.0
0 repos · best confidence N/A
Best PoC traction
0
Maximum stars on a matched PoC repo

Why it matters now

Mention timeline

Total mentions
3
within the 30d window
Peak daily
1
highest bucket

Evidence

Source links by recency

Newest mentions first
5 source links · newest first
  • sed, or already being poked at in the wild. Check the list, patch what you have, and hit the ones marked urgent first — CVE-2026-34348 , CVE-2026-18497 (stb TrueType), CVE-2026-63508, CVE-2026-56162, CVE-2026-65667, CVE-2026-50515, CVE-2026-62830, CVE-2026-59115, CVE-2026-50481 (Microsoft Windows), CVE-2026-64638 (WordPress), CVE-2026-64564 (Linux SCTP

    newsthehackernews.comAug 10, 2026, 3:00 PM
  • ing companies from portable bundles and YAML files that also define agents and commands they should execute. Tracked as CVE-2026-41679 (CVSS score of 10), the critical security defect impacted network-accessible Paperclip instances with default authenticated-mode configurations. A missing authorization check could be exploited to self-register an accou

    newswww.securityweek.comAug 6, 2026, 11:09 AM
  • hipped in versions 2026.416.0 and 0.3.1. Configuration exploited for code execution The most severe finding, tracked as CVE-2026-41679 , affected authenticated deployments using Paperclip’s default registration settings. Oasis found that an attacker could begin as an unauthenticated user, self-register for an account, approve their own command-line (CL

    newswww.csoonline.comAug 5, 2026, 12:00 PM
  • check codes now return richer detail for users. New module content (5) Paperclip AI RCE using a chain of six API calls (CVE-2026-41679) Authors: Sagilayani https://github.com/sagilayani and h00die-gr3y [email protected] Type: Exploit Pull request: #21547 contributed by h00die-gr3y Path: linux/http/paperclipai_unauth_rce_cve_2026_41679 AttackerKB re

    vendorwww.rapid7.comJun 19, 2026, 5:08 PM
  • No excerpt available.

    Exploitgithub.comApr 23, 2026, 2:16 AM

Exploit code

Public exploit repository references

Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.

0 repository references · best confidence N/A · max 0 stars
No public PoC repositories have been matched yet.

Related records

Similar CVEs

6 related CVEs with shared weakness or product evidence