← Retour à la recherche de CVE

CVE-2026-37006

gpt-researcher

Description

A vulnerability in the WebSocket endpoint of gpt-researcher v0.14.7 and before allows an unauthenticated remote attacker to achieve code execution via malicious Model Context Protocol configurations.

EPSS 0.27%Risque 0
Voir la source
Publication
2026-08-27 20:17:41
Versions concernées
<=0.14.7
Type
Bibliothèque
Dernière modification
2026-08-27 20:17:41
Vecteur
Pending