CVE-2026-5625Disclosure

LOWCVSS 2.1 · LOW

Exploit discussion active in current signal (3 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A weakness has been identified in assafelovic gpt-researcher up to 3.4.3. This issue affects some unknown processing of the file gpt_researcher/skills/researcher.py of the component WebSocket Interface. Executing a manipulation of the argument task can lead to cross site scripting. The attack may be launched remotely. The exploit has been made available to the public and could be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-79CWE-94

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Threat summary

  • Public PoC is present in monitored signal
  • 3 mentions across 1 observed day

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 1 signal
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-04-06: 3PoC Mentioned / Linked · 2026-04-06: 1Technical Details · 2026-04-06: 104-06
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets4 URLs
Full discourse3 posts
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-5625 - assafelovic gpt-researcher WebSocket http://researcher.py cross site scripting Intel Report: https://ift.tt/wb4lfar

    Post summary

    The alert announces CVE‑2026‑5625 as a cross‑site scripting flaw in a WebSocket implementation and directs readers to an Intel report for further details.

    0000042
    281 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-5625 A weakness has been identified in assafelovic gpt-researcher up to 3.4.3. This issue affects some unknown processing of the file gpt_researcher/skills/researcher.py of … https://www.cve.org/CVERecord?id=CVE-2026-5625 ----- Traducción: CVE-2026-5625 Se … http://infoflow.cloud`

    Post summary

    The text announces CVE‑2026‑5625 for assafelovic gpt‑researcher versions up to 3.4.3, noting a weakness in processing of researcher.py and linking to the CVE record, without further exploitation, patch, or technical detail.

    0000028
    67 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-5625 A weakness has been identified in assafelovic gpt-researcher up to 3.4.3. This issue affects some unknown processing of the file gpt_researcher/skills/researcher.py of … https://www.cve.org/CVERecord?id=CVE-2026-5625

    Post summary

    The post notes a weakness in assafelovic gpt-researcher (up to 3.4.3) affecting a file in the package, with a link to the CVE record for more information.

    00000211
    57.0K followersView on X

Explore more