{"id":"CVE-2025-32394","title":"AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents","summary":"AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.32, there is a DoS vulnerability in AITextSummarizerBlock. Malicious users can amplify their input. F…","severity":"none","cwe":["CWE-405","CWE-770"],"published":"2026-06-26","updated":"2026-09-29","sourceUpdated":"2026-09-29T19:10:00.160","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-32394","references":[{"url":"https://github.com/Significant-Gravitas/AutoGPT/security/advisories/GHSA-955p-gpfx-r66j","label":"security-advisories@github.com"}],"tags":["nvd"],"epss":0.00382,"epssPercentile":0.29629,"ingestedAt":"2026-09-29T19:44:04.093Z","slug":"CVE-2025-32394","body":"## Overview\n\nAutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.32, there is a DoS vulnerability in AITextSummarizerBlock. Malicious users can amplify their input. For example, if a malicious user inputs 10K of content, the server will consume 50G of memory, eventually causing memory resources to be exhausted, resulting in DoS. This vulnerability is fixed in 0.6.32.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}