CVE 5.1 MEDIUM

AutoGPT has missing Docker log rotation on platform containers that allows host disk-exhaustion DoS_CVE-2025-32425

5.1 / 10
MEDIUM
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

Description

AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intelligence agents that automate complex workflows. In AutoGPT, the execution process is recorded to the console (stdout/stderr), and deployed in container mode, which is automatically captured by Docker and stored as "container logs". However, prior to 0.6.32, there is no limit on the log size when the container is deployed. When the number of user accesses is too large, the log on the server disk will be too large, causing disk resource exhaustion and eventually causing DoS. autogpt-platform-beta-v0.6.32 fixes the issue.

Basic Information

ID CVE-2025-32425
Source GitHub_M
Published May 13, 2026 at 15:55

Affected Product

Vendor Significant-Gravitas
Product AutoGPT
Version < 0.6.32
Affected Versions Significant-Gravitas AutoGPT < 0.6.32

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.