PT-2026-1987 · Unknown · Mcp Manager For Claude Desktop
Brandon Niemczyk
+2
·
Publicado
2026-01-09
·
Atualizado
2026-01-28
·
CVE-2026-0757
CVSS v3.1
8.8
Alta
| Vetor | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
MCP Manager for Claude Desktop (affected versions not specified)
Description
The software contains a security issue that allows for sandbox escape and arbitrary code execution within the context of the MCP Manager process. This is triggered by manipulated MCP configurations or malicious pages/files. The software is considered high risk in production environments.
Recommendations
Disable or remove the software until an official fix is available.
Correção
OS Command Injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Mcp Manager For Claude Desktop