CVE-2026-101099: AG-UI-Protocol AG-UI
Medium severity, CVSS 4.3. EPSS: 0.5% chance of exploitation in the next 30 days.
A vulnerability was detected in ag-ui-protocol ag-ui up to 2026-09-23. This affects an unknown part of the file SseParser.kt of the component Kotlin Community SDK. Performing a manipulation results in handling of exceptional conditions. The attack may be initiated remotely. The pull request to fix this issue awaits acceptance.
Affected products
- AG-UI-Protocol AG-UI: version 2026-09-23 only
Published 2026-09-28. Last modified 2026-10-01.