Vulnerability  ·  2026-09-18

ag-ui-protocol — origin validation error in agent event application layer

VulnerabilityMedium impactGlobalCVE-2026-92360
NVD published this CVSS 6.3 Medium vulnerability on Sept 16, 2026 in the ag-ui agent event protocol's origin-validation logic.
ag-ui is a protocol for agent-to-UI event streaming; an origin-validation bypass could allow cross-origin event injection into agent conversation state, a narrow but relevant agentic-protocol integrity issue.
Manipulation of the TEXT_MESSAGE_START argument in prepareRunAgentInput (agent/agent.ts, Event Application Layer) causes an origin validation error, enabling remote exploitation though attack complexity is reported as high.
ag-ui-protocol/ag-ui 1.0
Track the ag-ui-protocol project for a fix; validate event origin independently of client-supplied event fields.
ag-ui-protocol GitHub
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →