PT-2026-6954 · Burtthecoder · Mcp-Maigret

Lexpl0It

·

Publicado

2026-02-08

·

Atualizado

2026-02-08

·

CVE-2026-2130

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions BurtTheCoder mcp-maigret versions through 1.0.12
Description A flaw exists in the component search username within the file src/index.ts. Manipulating the Username argument can result in command injection, potentially allowing for remote attacks.
Recommendations Upgrade to version 1.0.13 to address this issue.

Correção

Command Injection

Special Elements Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-2130
GHSA-2G7V-HGHF-GRG4

Produtos afetados

Mcp-Maigret