PT-2025-10456 · Mage Ai · Mage Ai

Aden Yap

+1

·

Published

2025-03-09

·

Updated

2025-09-18

·

CVE-2025-2129

CVSS v2.0

5.1

Medium

VectorAV:N/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Mage AI version 0.9.75
Description A vulnerability was found in Mage AI, which has been classified as problematic. The manipulation leads to insecure default initialization of resource. It is possible to initiate the attack remotely. The complexity of an attack is rather high and the exploitability is told to be difficult. The real existence of this vulnerability is still doubted at the moment.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2025-2129

Affected Products

Mage Ai