PatchSiren

agentverus CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH agentverus CVE published 2026-09-02

CVE-2026-84811

The agentverus-scanner fails to analyze compiled Python bytecode files in companion code directories. This allows attackers to bypass security scanning by including malicious __pycache__ entries with benign source files, enabling arbitrary Python bytecode execution on import while the scanner reports a CERTIFIED verdict with high trust scores in both static and semantic analysis modes.