Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-7318

Опубликовано: 28 апр. 2026
Источник: nvd
CVSS3: 5.9
CVSS2: 4.6
EPSS Низкий

Описание

A vulnerability was detected in elie mcp-project 0.1.0. The affected element is the function search_papers of the file research_server.py. The manipulation of the argument topic results in path traversal. Attacking locally is a requirement. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

EPSS

Процентиль: 8%
0.00185
Низкий

5.9 Medium

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 5.9
github
3 месяца назад

A vulnerability was detected in elie mcp-project 0.1.0. The affected element is the function search_papers of the file research_server.py. The manipulation of the argument topic results in path traversal. Attacking locally is a requirement. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

EPSS

Процентиль: 8%
0.00185
Низкий

5.9 Medium

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-22