CVE-2026-57495

agenticmail · @agenticmail/core, @agenticmail/claudecode, @agenticmail/codex, @agenticmail/openclaw

AgenticMail packages are affected by a missing authentication vulnerability, allowing unauthenticated attackers to perform unauthorized actions on critical functions.

Executive summary

Several AgenticMail components are vulnerable to a missing authentication flaw, which could allow unauthenticated attackers to perform unauthorized operations.

Vulnerability

This is a missing authentication for critical function vulnerability (CWE-306). Attackers can access sensitive operations without providing valid credentials, as the application fails to verify the user identity before executing critical requests.

Business impact

With a CVSS score of 8.2, this vulnerability poses a significant risk to the integrity of AI-driven email and communication workflows. An attacker could potentially hijack AI agent functions, leading to unauthorized communications or data manipulation, which could severely damage trust and operational security.

Remediation

Immediate Action: Update all affected @agenticmail packages to the latest patched versions (0.9.43, 0.2.39, 0.1.33, and 0.5.71, respectively).

Proactive Monitoring: Review application logs for unexpected API calls or unauthorized access attempts to administrative or agent-specific endpoints.

Compensating Controls: If immediate patching is not feasible, implement strict network-level access controls to limit access to the affected service until updates are applied.

Exploitation status

Public Exploit Available: Unknown

Analyst recommendation

This vulnerability is highly critical due to the ease of exploitation. Organizations utilizing AgenticMail should immediately audit their dependencies and apply the recommended updates to prevent unauthorized access to their AI agent infrastructure.