VULNRABLE / Vulnerability / GHSA-93qj-5q5v-3c2h

GHSA-93qj-5q5v-3c2h

CRITICAL WATCH pantheon-agents GHSA

Exploit verdict: CVSS 9.5 · no EPSS data

CVSS Score
9.5
Severity
CRITICAL
EPSS
Source
GHSA

Summary

Trojanized pantheon-agents 0.6.1 and 0.6.2 on PyPI ship a credential stealer (supply-chain account compromise)

What this means

GHSA-93qj-5q5v-3c2h is a critical-severity vulnerability affecting pantheon-agents, rated CVSS 9.5. Published August 26, 2026.

View full advisory at GHSA →