SCA: security update for apm (GHSA-q5pp-gvjg-h7v4)

high Tenable Cloud Security Plugin ID 442088

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- Microsoft APM is an open-source, community-driven dependency manager for AI agents. From 0.5.4 to 0.12.4,
two primitive integrators in apm-cli enumerate package files with bare Path.glob() / Path.rglob() calls
and read each match with Path.read_text(), transparently following symbolic links. A symlink committed
inside a remote APM dependency under .apm/prompts/<x>.prompt.md or .apm/agents/<x>.agent.md is preserved
verbatim into apm_modules/ on clone and then dereferenced during integration, with the resolved content
written as a regular file into the project's deploy directories. The package content_hash, the pre-deploy
SecurityGate scan, and apm audit do not flag this. The deploy roots are not added to the auto-generated
.gitignore, so the resulting files are staged by git add by default. This vulnerability is fixed in
0.13.0. (CVE-2026-45539)

Solution

Update the apm library and its related packages to version 0.13.0 or later.

See Also

https://github.com/advisories/GHSA-q5pp-gvjg-h7v4

Plugin Details

Severity: High

ID: 442088

Version: Revision 1.3

Type: Local

Family: SCA Checks

Published: 5/18/2026

Updated: 6/1/2026

Supported Sensors: Tenable Cloud Security, Tenable Self-Hosted Container Security

Risk Information

VPR

Risk Factor: Medium

Score: 5.2

Vendor

Vendor Severity: High

CVSS v2

Risk Factor: High

Base Score: 7.8

Temporal Score: 5.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:N/A:N

CVSS Score Source: CVE-2026-45539

CVSS v3

Risk Factor: High

Base Score: 7.4

Temporal Score: 6.4

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 5/18/2026

Vulnerability Publication Date: 5/15/2026

Reference Information

CVE: CVE-2026-45539