CVE-2025-55449

HIGH

AstrBotDevs AstrBot 3.5.15 - Auth Bypass

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2025-55449. PoCs published by xhh1h, Marven11.

AI-analyzed exploit summary This repository contains a functional exploit for CVE-2025-55449, targeting AstrBot's JWT authentication bypass and plugin installation mechanism to achieve remote code execution. The exploit forges a JWT token using a hardcoded secret and uploads a malicious plugin to execute arbitrary commands.

Description

AstrBotDevs AstrBot 3.5.15 has Advanced_System_for_Text_Response_and_Bot_Operations_Tool as the hardcoded private key used to sign a JWT.

Exploits (2)

nomisec WORKING POC 3 stars
by xhh1h · poc
https://github.com/xhh1h/CVE-2025-55449

This repository contains a functional exploit for CVE-2025-55449, targeting AstrBot's JWT authentication bypass and plugin installation mechanism to achieve remote code execution. The exploit forges a JWT token using a hardcoded secret and uploads a malicious plugin to execute arbitrary commands.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: AstrBot (version not specified)
No auth needed
Prerequisites: Network access to the target AstrBot instance · Python 3.6+ with PyJWT and requests libraries
devstral-2 · analyzed May 15, 2026 Full analysis →
nomisec WORKING POC 2 stars
by Marven11 · poc
https://github.com/Marven11/CVE-2025-55449-AstrBot-RCE

This repository contains a functional exploit for CVE-2025-55449, which leverages a hardcoded JWT secret in AstrBot <=3.5.17 to achieve RCE via arbitrary plugin upload. The exploit generates a malicious plugin ZIP file and uploads it to the target server, creating a memory shell for command execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: AstrBot <=3.5.17
No auth needed
Prerequisites: Network access to the target server · AstrBot web interface exposed
devstral-2 · analyzed May 15, 2026 Full analysis →

Scores

CVSS v3 7.3
EPSS 0.0001
EPSS Percentile 1.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-321
Status published
Products (2)
astrbot/astrbot 3.5.15
pypi/astrbot 0 - 3.5.18PyPI
Published May 08, 2026
Tracked Since May 08, 2026