← Volver al buscador de CVEs

CVE-2026-37006

gpt-researcher

Descripción

A vulnerability in the WebSocket endpoint of gpt-researcher v0.14.7 and before allows an unauthenticated remote attacker to achieve code execution via malicious Model Context Protocol configurations.

EPSS 0.27%Riesgo 0
Ver fuente
Publicación
2026-08-27 20:17:41
Versiones afectadas
<=0.14.7
Tipo
Librería
Última modificación
2026-08-27 20:17:41
Vector
Pending