CVE-2026-76993
GreyDGL PentestGPT Web-Page Crawling injection
CVSS Score
5.0
EPSS Score
0.0%
EPSS Percentile
0th
A vulnerability was determined in GreyDGL PentestGPT up to 1.0.0. This vulnerability affects unknown code of the component Web-Page Crawling. Executing a manipulation of the argument Traceback can lead to injection. The attack can be executed remotely. A high complexity level is associated with this attack. It is stated that the exploitability is difficult. The exploit has been publicly disclosed and may be utilized. The reported GitHub issue was closed with the label "not planned".
| CWE | CWE-74 CWE-707 |
| Vendor | greydgl |
| Product | pentestgpt |
| Published | Aug 20, 2026 |
Stay Ahead of the Next One
Get instant alerts for greydgl pentestgpt
Be the first to know when new medium vulnerabilities affecting greydgl pentestgpt are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Affected Versions
GreyDGL / PentestGPT
1.0
References
vuldb.com: https://vuldb.com/vuln/393617 vuldb.com: https://vuldb.com/vuln/393617/cti vuldb.com: https://vuldb.com/cve/CVE-2026-76993 vuldb.com: https://vuldb.com/submit/880116 github.com: https://github.com/GreyDGL/PentestGPT/issues/484 github.com: https://github.com/ez-lbz/pentestgpt-vul-report github.com: https://github.com/GreyDGL/PentestGPT/
Credits
๐ ez-lbz (VulDB User) VulDB CNA Team