{"apiVersion":"1.0","identifier":"CVE-2026-81848","description":"A vulnerability was determined in cyberchitta scrapling-fetch-mcp up to 0.2.2. The impacted element is the function s_fetch_page/s_fetch_pattern of the file src/scrapling_fetch_mcp/_fetcher.py. Executing a manipulation can lead to server-side request forgery. The attack can be launched remotely. Upgrading to version 0.2.3 is sufficient to resolve this issue. This patch is called 9f6f34e92c55c3d95566ad9c62aca7327d24533a. Upgrading the affected component is advised.","publishedAt":"2026-08-28T00:18:22","lastModifiedAt":"2026-08-28T15:09:00","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-81848","cvssScore":3.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N","epssProbability":0.00196,"riskScore":0.36,"affectedProduct":"scrapling-fetch-mcp","affectedVersions":"<=0.2.2","vulnerabilityType":"Library","operatingSystems":[],"links":{"self":"https://www.redsauce.net/api/cves/CVE-2026-81848","webPages":{"es":"https://www.redsauce.net/es/cves/CVE-2026-81848","en":"https://www.redsauce.net/en/cves/CVE-2026-81848","fr":"https://www.redsauce.net/fr/cves/CVE-2026-81848","pt":"https://www.redsauce.net/pt/cves/CVE-2026-81848","de":"https://www.redsauce.net/de/cves/CVE-2026-81848","sk":"https://www.redsauce.net/sk/cves/CVE-2026-81848","el":"https://www.redsauce.net/el/cves/CVE-2026-81848"},"source":"https://nvd.nist.gov/vuln/detail/CVE-2026-81848"}}