ATLAS Landscape
AML.T0112.000

Local AI Agent

Adversaries may achieve full system compromise by abusing AI agents running locally on a host, such as computer-use agents or AI-driven browsers. These agents are designed to autonomously interact with the operating system, applications, and external services, often with broad permissions to execute commands, access files, manage credentials, and control user workflows. If an adversary is able to take control of an AI agent's behavior, they effectively gain the same level of access as the agent. This can result in complete control over the machine, including executing arbitrary code, accessing or exfiltrating sensitive data, modifying system configurations, and establishing persistence.

Severity CVE CVSS
CRITICAL CVE-2026-44211 9.6
CRITICAL GHSA-8x8f-54wf-vv92 9.1
CRITICAL CVE-2026-39305 9.0
HIGH CVE-2026-39891 8.8
HIGH CVE-2026-35020 8.4
HIGH GHSA-x462-jjpc-q4q4 8.1
HIGH CVE-2026-35021 7.8
MEDIUM CVE-2026-26320 6.5
MEDIUM CVE-2026-42045 6.2
MEDIUM GHSA-cmfr-9m2r-xwhq
MEDIUM GHSA-whf9-3hcx-gq54
MEDIUM GHSA-q2gc-xjqw-qp89
LOW GHSA-cm8v-2vh9-cxf3
HIGH GHSA-p4h8-56qp-hpgv
HIGH GHSA-wppj-c6mr-83jj
MEDIUM GHSA-mj59-h3q9-ghfh
HIGH CVE-2026-39861
HIGH GHSA-7437-7hg8-frrw
MEDIUM GHSA-w9j9-w4cp-6wgr
MEDIUM GHSA-w8g9-x8gx-crmm
MEDIUM GHSA-vr5g-mmx7-h897
MEDIUM GHSA-67mf-f936-ppxf
MEDIUM GHSA-5h3f-885m-v22w
LOW GHSA-25wv-8phj-8p7r
HIGH GHSA-5wj5-87vq-39xm