A flaw has been found in abrinsmead mindpilot-mcp 0.5.0. Affected by this issue is some unknown functionality of the component HistoryService. This manipulation of the argument ID causes path traversal. The attack needs to be launched locally. The project was informed of the problem early through an issue report but has not responded yet.
Metrics
Affected Vendors & Products
References
History
Sat, 08 Aug 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in abrinsmead mindpilot-mcp 0.5.0. Affected by this issue is some unknown functionality of the component HistoryService. This manipulation of the argument ID causes path traversal. The attack needs to be launched locally. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | abrinsmead mindpilot-mcp HistoryService path traversal | |
| First Time appeared |
Abrinsmead
Abrinsmead mindpilot-mcp |
|
| Weaknesses | CWE-22 | |
| CPEs | cpe:2.3:a:abrinsmead:mindpilot-mcp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Abrinsmead
Abrinsmead mindpilot-mcp |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-08T13:15:08.732Z
Reserved: 2026-08-07T15:37:41.134Z
Link: CVE-2026-19287
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-08T14:30:06Z