{
    "dataType": "CVE_RECORD",
    "dataVersion": "5.2",
    "cveMetadata": {
        "cveId": "CVE-2026-84425",
        "assignerOrgId": "1af790b2-7ee1-4545-860a-a788eba489b5",
        "state": "PUBLISHED",
        "assignerShortName": "VulDB",
        "dateReserved": "2026-09-01T17:56:15.495Z",
        "datePublished": "2026-09-02T00:15:11.549Z",
        "dateUpdated": "2026-09-02T00:15:11.549Z"
    },
    "containers": {
        "cna": {
            "providerMetadata": {
                "orgId": "1af790b2-7ee1-4545-860a-a788eba489b5",
                "shortName": "VulDB",
                "dateUpdated": "2026-09-02T00:15:11.549Z"
            },
            "title": "zhayujie CowAgent Browser Tool browser_tool.py BrowserTool denial of service",
            "problemTypes": [
                {
                    "descriptions": [
                        {
                            "type": "CWE",
                            "cweId": "CWE-404",
                            "lang": "en",
                            "description": "Denial of Service"
                        }
                    ]
                }
            ],
            "affected": [
                {
                    "vendor": "zhayujie",
                    "product": "CowAgent",
                    "versions": [
                        {
                            "version": "2.1.0",
                            "status": "affected"
                        },
                        {
                            "version": "2.1.1",
                            "status": "affected"
                        },
                        {
                            "version": "2.1.2",
                            "status": "affected"
                        },
                        {
                            "version": "2.1.3",
                            "status": "affected"
                        }
                    ],
                    "cpes": [
                        "cpe:2.3:a:zhayujie:cowagent:*:*:*:*:*:*:*:*"
                    ],
                    "modules": [
                        "Browser Tool"
                    ]
                }
            ],
            "descriptions": [
                {
                    "lang": "en",
                    "value": "A vulnerability was found in zhayujie CowAgent up to 2.1.3. This impacts the function BrowserTool of the file agent/tools/browser/browser_tool.py of the component Browser Tool. Performing a manipulation results in denial of service. The attack can be initiated remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way."
                }
            ],
            "metrics": [
                {
                    "cvssV4_0": {
                        "version": "4.0",
                        "baseScore": 5.3,
                        "vectorString": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P",
                        "baseSeverity": "MEDIUM"
                    }
                },
                {
                    "cvssV3_1": {
                        "version": "3.1",
                        "baseScore": 4.3,
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:P/RL:X/RC:R",
                        "baseSeverity": "MEDIUM"
                    }
                },
                {
                    "cvssV3_0": {
                        "version": "3.0",
                        "baseScore": 4.3,
                        "vectorString": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:P/RL:X/RC:R",
                        "baseSeverity": "MEDIUM"
                    }
                },
                {
                    "cvssV2_0": {
                        "version": "2.0",
                        "baseScore": 4,
                        "vectorString": "AV:N/AC:L/Au:S/C:N/I:N/A:P/E:POC/RL:ND/RC:UR"
                    }
                }
            ],
            "timeline": [
                {
                    "time": "2026-09-01T00:00:00.000Z",
                    "lang": "en",
                    "value": "Advisory disclosed"
                },
                {
                    "time": "2026-09-01T02:00:00.000Z",
                    "lang": "en",
                    "value": "VulDB entry created"
                },
                {
                    "time": "2026-09-01T20:01:21.000Z",
                    "lang": "en",
                    "value": "VulDB entry last update"
                }
            ],
            "credits": [
                {
                    "lang": "en",
                    "value": "hackerguopeng (VulDB User)",
                    "type": "reporter"
                },
                {
                    "lang": "en",
                    "value": "VulDB CNA Team",
                    "type": "coordinator"
                }
            ],
            "references": [
                {
                    "url": "https://vuldb.com/vuln/397792",
                    "name": "VDB-397792 | zhayujie CowAgent Browser Tool browser_tool.py BrowserTool denial of service",
                    "tags": [
                        "vdb-entry",
                        "technical-description"
                    ]
                },
                {
                    "url": "https://vuldb.com/vuln/397792/cti",
                    "name": "VDB-397792 | CTI Indicators (IOB, IOC, TTP, IOA)",
                    "tags": [
                        "signature",
                        "permissions-required"
                    ]
                },
                {
                    "url": "https://vuldb.com/cve/CVE-2026-84425",
                    "name": "CVE-2026-84425 | CVE Analysis and Report",
                    "tags": [
                        "third-party-advisory"
                    ]
                },
                {
                    "url": "https://vuldb.com/submit/884017",
                    "name": "Submit #884017 | zhayujie CowAgent 2.1.3 Denial of Service",
                    "tags": [
                        "third-party-advisory"
                    ]
                },
                {
                    "url": "https://github.com/hackerguopeng/cve/tree/main/CowAgent_Browser_Evaluate_Wait_DoS_Report",
                    "tags": [
                        "exploit"
                    ]
                }
            ],
            "x_generator": [
                "VulDB PVTS v202609"
            ]
        }
    }
}