CVE-2026-57495
agenticmail · @agenticmail/core, @agenticmail/claudecode, @agenticmail/codex, @agenticmail/openclaw
AgenticMail packages are affected by a missing authentication vulnerability, allowing unauthenticated attackers to perform unauthorized actions on critical functions.
Executive summary
Several AgenticMail components are vulnerable to a missing authentication flaw, which could allow unauthenticated attackers to perform unauthorized operations.
Vulnerability
This is a missing authentication for critical function vulnerability (CWE-306). Attackers can access sensitive operations without providing valid credentials, as the application fails to verify the user identity before executing critical requests.
Business impact
With a CVSS score of 8.2, this vulnerability poses a significant risk to the integrity of AI-driven email and communication workflows. An attacker could potentially hijack AI agent functions, leading to unauthorized communications or data manipulation, which could severely damage trust and operational security.
Remediation
Immediate Action: Update all affected @agenticmail packages to the latest patched versions (0.9.43, 0.2.39, 0.1.33, and 0.5.71, respectively).
Proactive Monitoring: Review application logs for unexpected API calls or unauthorized access attempts to administrative or agent-specific endpoints.
Compensating Controls: If immediate patching is not feasible, implement strict network-level access controls to limit access to the affected service until updates are applied.
Exploitation status
Public Exploit Available: Unknown
Analyst recommendation
This vulnerability is highly critical due to the ease of exploitation. Organizations utilizing AgenticMail should immediately audit their dependencies and apply the recommended updates to prevent unauthorized access to their AI agent infrastructure.