← Voltar à pesquisa de CVEs

CVE-2026-37006

gpt-researcher

Descrição

A vulnerability in the WebSocket endpoint of gpt-researcher v0.14.7 and before allows an unauthenticated remote attacker to achieve code execution via malicious Model Context Protocol configurations.

EPSS 0.27%Risco 0
Ver fonte
Publicação
2026-08-27 20:17:41
Versões afetadas
<=0.14.7
Tipo
Biblioteca
Última alteração
2026-08-27 20:17:41
Vetor
Pending