Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Search Results: "mcp_server.py"
Click on any threat for detailed analysis and mitigation recommendations
0 PraisonAI is a multi-agent teams system. From praisonaiagents 0.6.0 until 1.6.59 and PraisonAI 3.10.0 until 4.6.59, ToolsMCPServer.run_sse() in src/praisonai-agents/praisonaiagents/mcp/mcp_server.py mounts SseServerTransport on the legacy /sse and /messages/ endpoints without default Host, Origin, or authentication enforcement. A malicious website can use DNS rebinding against a reachable local or internal SSE server, supply attacker-controlled Host and Origin headers, enumerate registered tools, and invoke them with the server user's privileges. The Streamable HTTP transport rejects the same hostile Origin, which isolates the flaw to the legacy SSE wrapper. An initial remediation was released in praisonaiagents 1.6.59 and PraisonAI 4.6.59. Join the discussion | CVE Database V5 | 09/15/2026, 10:13:21 UTC Added: 09/15/2026, 10:32:08 UTC |
0 CVE-2026-81835 is a medium severity code injection vulnerability in RooCodeInc Roo-Code versions 3.51.0 and 3.51.1. It affects the fetch_instructions function in the malicious_mcp_server.py file of the MCP Integration Trust Model component. The vulnerability allows remote attackers to inject code. The product is no longer supported by the vendor, and no patches are available. Join the discussion | GCVE Database | 08/27/2026, 20:45:10 UTC Added: 08/28/2026, 15:23:08 UTC |
0 CVE-2026-81835 is a medium severity code injection vulnerability in RooCodeInc Roo-Code versions 3.51.0 and 3.51.1. It affects the fetch_instructions function in the malicious_mcp_server.py file within the MCP Integration Trust Model component. The vulnerability allows remote attackers to inject code. The product is no longer supported by the vendor, who has archived the repository and does not encourage use of the software. Join the discussion | CVE Database V5 | 08/27/2026, 20:45:10 UTC Added: 08/28/2026, 11:04:31 UTC |
0 Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior to 3.0.8, create_mobile_data_collection_server and create_mobile_action_server in ufo/client/mcp/http_servers/mobile_mcp_server.py exposed Streamable HTTP MCP services on TCP ports 8020 and 8021 without authentication, allowing an unauthenticated remote attacker to invoke capture_screenshot, get_ui_tree, tap, swipe, type_text, launch_app, press_key, and click_control against an ADB-connected Android device, disclose screen and device data, and modify device state. This issue is fixed in version 3.0.8. Join the discussion | CVE Database V5 | 08/12/2026, 16:29:03 UTC Added: 08/12/2026, 16:41:43 UTC |
A flaw has been found in fatbobman mail-mcp-bridge up to 1.3.3. Affected is an unknown function of the file src/mail_mcp_server.py. Executing a manipulation of the argument message_ids can lead to path traversal. The attack can be executed remotely. The exploit has been published and may be used. Upgrading to version 1.3.4 is able to address this issue. This patch is called 638b162b26532e32fa8d8047f638537dbdfe197a. Upgrading the affected component is recommended. Join the discussion | CVE Database V5 | 04/29/2026, 15:00:14 UTC Added: 04/29/2026, 16:06:27 UTC |
0 CVE-2026-7215 is a command injection vulnerability in the egtai gmx-vmd-mcp product version 0.1.0. The flaw exists in the launch_vmd_gui_tool function within the mcp_server.py file, where manipulation of the structure_file or trajectory_file arguments can lead to command injection. This vulnerability can be exploited remotely without authentication. The issue was reported to the project early, but no response or fix has been provided yet. The vulnerability has a CVSS 4.0 base score of 6.9, indicating medium severity. Join the discussion | CVE Database V5 | 04/28/2026, 02:00:22 UTC Added: 04/28/2026, 02:51:25 UTC |
0 A vulnerability was detected in ef10007 MLOps_MCP 1.0.0. This impacts an unknown function of the file fastmcp_server.py of the component save_file Tool. The manipulation of the argument filename/destination results in path traversal. The attack may be performed from remote. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet. Join the discussion | CVE Database V5 | 04/28/2026, 01:30:26 UTC Added: 04/28/2026, 02:04:18 UTC |
0 CVE-2026-7211 is a command injection vulnerability in dvladimirov MCP version 0.1.0, specifically in the GitSearchRequest function of the mcp_server.py file within the Git Search API component. An attacker can remotely manipulate the repo_url or pattern argument to execute arbitrary commands. The vulnerability has a CVSS 4.0 base score of 6.9, indicating medium severity. Although the issue was reported early, the project has not yet responded or provided a fix. Exploit code is publicly available, but no known exploits in the wild have been reported to date. Join the discussion | CVE Database V5 | 04/28/2026, 01:00:20 UTC Added: 04/28/2026, 01:09:01 UTC |
Showing 1 to 8 of 8 results