---
id: CVE-2026-10212
aliases:
  - GHSA-r6vm-4xwg-w69h
title: >-
  AstrBot: Manipulation of astr_main_agent's session_id parameter leads to
  authorization bypass
summary: >-
  AstrBot: Manipulation of astr_main_agent's session_id parameter leads to
  authorization bypass
severity: medium
cvss: 6.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L'
vendor: astrbot
product: astrbot
ecosystem: pip
affected:
  - astrbot <= 4.24.2
published: '2026-06-01'
updated: '2026-07-08'
source: OSV
sourceUrl: 'https://osv.dev/vulnerability/GHSA-r6vm-4xwg-w69h'
references:
  - url: 'https://nvd.nist.gov/vuln/detail/CVE-2026-10212'
  - url: 'https://gist.github.com/YLChen-007/91a7f955143099e1747424707dfad0f9'
  - url: 'https://github.com/AstrBotDevs/AstrBot'
  - url: 'https://vuldb.com/cve/CVE-2026-10212'
  - url: 'https://vuldb.com/submit/821923'
  - url: 'https://vuldb.com/vuln/367491'
  - url: 'https://vuldb.com/vuln/367491/cti'
tags:
  - osv
  - pip
epss: 0.00211
epssPercentile: 0.10188
ingestedAt: '2026-07-08T18:25:52.664Z'
---

## Overview

A vulnerability was identified in AstrBotDevs AstrBot 4.24.2. This affects the function astr_main_agent of the file astrbot/core/astr_main_agent.py. Such manipulation of the argument session_id leads to authorization bypass. It is possible to launch the attack remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

## Affected packages

- `astrbot <= 4.24.2`

## Remediation

Refer to the advisory for the patched release.
