CVE-2026-75130: Improper Neutralization of Input Used for LLM Prompting in Uptash Context7
Context7 versions up to 2.1.2 have a prompt injection vulnerability in the Custom AI Instructions feature. This flaw allows attackers to inject malicious instructions into connected AI coding agents via the MCP server. Exploitation can lead to credential exfiltration from environment files and destructive file deletion triggered by routine agent actions.
AI Analysis
Technical Summary
CVE-2026-75130 describes a prompt injection vulnerability in Uptash's Context7 product through version 2.1.2. The vulnerability arises from improper neutralization of input used for AI prompt generation in the Custom AI Instructions feature served by the MCP server. Attackers can inject unsanitized content that causes connected AI coding agents to execute malicious instructions. This can result in exfiltration of credentials from environment files to attacker-controlled services and destructive file deletions on the victim's machine during normal agent operations such as library documentation requests.
Potential Impact
Successful exploitation allows attackers to execute arbitrary instructions within AI coding agents, leading to credential theft and destructive file operations on the victim's system. This compromises confidentiality and integrity of the affected environment.
Mitigation Recommendations
No patch or official fix information is provided in the available data. Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, restrict access to the Custom AI Instructions feature and monitor for suspicious activity related to AI agent operations.
CVE-2026-75130: Improper Neutralization of Input Used for LLM Prompting in Uptash Context7
Description
Context7 versions up to 2.1.2 have a prompt injection vulnerability in the Custom AI Instructions feature. This flaw allows attackers to inject malicious instructions into connected AI coding agents via the MCP server. Exploitation can lead to credential exfiltration from environment files and destructive file deletion triggered by routine agent actions.
CVSS v4.0
Score 6.4medium
Affected software
Uptash
Context7
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2026-75130 describes a prompt injection vulnerability in Uptash's Context7 product through version 2.1.2. The vulnerability arises from improper neutralization of input used for AI prompt generation in the Custom AI Instructions feature served by the MCP server. Attackers can inject unsanitized content that causes connected AI coding agents to execute malicious instructions. This can result in exfiltration of credentials from environment files to attacker-controlled services and destructive file deletions on the victim's machine during normal agent operations such as library documentation requests.
Potential Impact
Successful exploitation allows attackers to execute arbitrary instructions within AI coding agents, leading to credential theft and destructive file operations on the victim's system. This compromises confidentiality and integrity of the affected environment.
Mitigation Recommendations
No patch or official fix information is provided in the available data. Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, restrict access to the Custom AI Instructions feature and monitor for suspicious activity related to AI agent operations.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- VulnCheck
- Date Reserved
- 2026-08-17T18:39:57.660Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 6a84a24cc6e8be033294f6b5
Added to database: 08/18/2026, 18:19:56 UTC
Last enriched: 09/11/2026, 21:04:33 UTC
Last updated: 10/02/2026, 14:46:10 UTC
Views: 116
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.