<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T13:22:23.156027+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-371513</id>
    <title>EUVD-2026-371513</title>
    <updated>2026-10-04T13:22:23.236003+00:00</updated>
    <content>EUVD-2026-371513</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-371513"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-54504</id>
    <title>fkie_cve-2026-54504</title>
    <updated>2026-10-04T13:22:23.236053+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>MCP Documentation Server is a local-first document management and semantic search server for AI coding agents. From 1.13.0 until 1.13.1, the automatically started Web UI in src/server.ts calls startWebServer in src/web-server.ts with START_WEB_UI enabled by default and WEB_PORT set to 3080. startWebServer uses app.listen(PORT) without a host, which binds the unauthenticated document-management API to all interfaces rather than localhost. A network-reachable client can invoke GET /api/documents, GET /api/documents/:id, POST /api/documents, POST /api/search-all, DELETE /api/documents/:id, and GET /api/config without credentials to enumerate and read documents, search the corpus, insert or delete documents, and tamper with the MCP assistant's knowledge base. The service must be reachable from the attacker's LAN, VM network, container bridge, VPN, or another routed network, and the issue does not provide remote code execution. This issue is fixed in 1.13.1.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-54504"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-6f5r-5672-72j7</id>
    <title>GHSA-6f5r-5672-72j7 — @andrea9293/mcp-documentation-server: Web UI API binds to all interfaces without authentication by default</title>
    <updated>2026-10-04T13:22:23.236126+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: @andrea9293/mcp-documentation-server</p>
<p>### Summary</p>
<p>`@andrea9293/mcp-documentation-server` v1.13.0 documents that a Web UI starts automatically on port `3080`. However, the Web UI/API appears to bind to all network interfaces by default (`*:3080` / `0.0.0.0:3080`) instead of localhost-only, and its document-management API endpoints do not require authentication.</p>
<p>As a result, any network-reachable client on the same LAN, VM network, or container bridge can access the document-admin API without credentials. In my reproduction, I was able to enumerate documents, add a document, read its full content, search across the corpus, and delete the document through the host's LAN IP.</p>
<p>The issue is not that a Web UI exists. The issue is that a local document-management Web UI/API is exposed on all interfaces by default without authentication.</p>
<p>### Details</p>
<p>The README documents that the Web UI starts automatically and tells users to open:</p>
<p>```text
http://localhost:3080
```</p>
<p>It also documents `START_WEB_UI=true` and `WEB_PORT=3080` as the defaults.</p>
<p>The vulnerable behavior appears to come from starting the web server without binding it to localhost explicitly.</p>
<p>In `src/server.ts`, the Web UI is started unless `START_WEB_UI=false`:</p>
<p>```ts
if (process.env.START_WEB_UI !== 'false') {
    initializeDocumentManager().then(manager =&gt; {
        return startWebServer(undefined, manager);
    }).then(() =&gt; {
        console.error('[Server] Web UI started (port=' + (process.env.WEB_PORT || '3080') + ')');
    })...
}
```</p>
<p>In `src/web-s…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-6f5r-5672-72j7"/>
  </entry>
</feed>
