<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 20:22:29 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-274987</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-274987</link>
      <description>EUVD-2026-274987</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-274987</guid>
    </item>
    <item>
      <title>fkie_cve-2026-30861</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-30861</link>
      <description>&lt;p&gt;WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. From version 0.2.5 to before version 0.2.10, an unauthenticated remote code execution (RCE) vulnerability exists in the MCP stdio configuration validation. The application allows unrestricted user registration, meaning any attacker can create an account and exploit the command injection flaw. Despite implementing a whitelist for allowed commands (npx, uvx) and blacklists for dangerous arguments and environment variables, the validation can be bypassed using the -p flag with npx node. This allows any attacker to execute arbitrary commands with the application&amp;#39;s privileges, leading to complete system compromise. This issue has been patched in version 0.2.10.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. From version 0.2.5 to before version 0.2.10, an unauthenticated remote code execution (RCE) vulnerability exists in the MCP stdio configuration validation. The application allows unrestricted user registration, meaning any attacker can create an account and exploit the command injection flaw. Despite implementing a whitelist for allowed commands (npx, uvx) and blacklists for dangerous arguments and environment variables, the validation can be bypassed using the -p flag with npx node. This allows any attacker to execute arbitrary commands with the application&amp;#39;s privileges, leading to complete system compromise. This issue has been patched in version 0.2.10.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-30861</guid>
    </item>
    <item>
      <title>GHSA-r55h-3rwj-hcmg — WeKnora has Remote Code Execution (RCE) via Command Injection in MCP Stdio Configuration Validation</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-r55h-3rwj-hcmg</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/Tencent/WeKnora&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;A critical unauthenticated remote code execution (RCE) vulnerability exists in the MCP stdio configuration validation introduced in version 2.0.5.&lt;/p&gt;
&lt;p&gt;The application allows unrestricted user registration, meaning any attacker can create an account and exploit the command injection flaw. Despite implementing a whitelist for allowed commands (`npx`, `uvx`) and blacklists for dangerous arguments and environment variables, the validation can be bypassed using the `-p` flag with `npx node`. This allows any attacker to execute arbitrary commands with the application&amp;#39;s privileges, leading to complete system compromise.&lt;/p&gt;
&lt;p&gt;The vulnerability remained unfixed across multiple releases (2.0.6-2.0.9) before being silently patched in version 2.0.10, without a published CVE, potentially leaving customers unaware.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;The application&amp;#39;s open registration policy, combined with the vulnerable MCP stdio configuration, creates an unrestricted attack surface. Any attacker can:
1. Register a new account without restrictions (no email verification, approval process, or rate limiting mentioned)
2. Obtain API authentication credentials
3. Exploit the command injection vulnerability to execute arbitrary code&lt;/p&gt;
&lt;p&gt;The security patch introduced in commit f7900a5e9a18c99d25cec9589ead9e4e59ce04bb attempts to prevent command injection through:
1. **Command Whitelist**: Only `uvx` and `npx` are allowed
2. **Argument Blacklist**: Blocks dangerous patterns including shells, command chaining,…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/Tencent/WeKnora&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;A critical unauthenticated remote code execution (RCE) vulnerability exists in the MCP stdio configuration validation introduced in version 2.0.5.&lt;/p&gt;
&lt;p&gt;The application allows unrestricted user registration, meaning any attacker can create an account and exploit the command injection flaw. Despite implementing a whitelist for allowed commands (`npx`, `uvx`) and blacklists for dangerous arguments and environment variables, the validation can be bypassed using the `-p` flag with `npx node`. This allows any attacker to execute arbitrary commands with the application&amp;#39;s privileges, leading to complete system compromise.&lt;/p&gt;
&lt;p&gt;The vulnerability remained unfixed across multiple releases (2.0.6-2.0.9) before being silently patched in version 2.0.10, without a published CVE, potentially leaving customers unaware.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;The application&amp;#39;s open registration policy, combined with the vulnerable MCP stdio configuration, creates an unrestricted attack surface. Any attacker can:
1. Register a new account without restrictions (no email verification, approval process, or rate limiting mentioned)
2. Obtain API authentication credentials
3. Exploit the command injection vulnerability to execute arbitrary code&lt;/p&gt;
&lt;p&gt;The security patch introduced in commit f7900a5e9a18c99d25cec9589ead9e4e59ce04bb attempts to prevent command injection through:
1. **Command Whitelist**: Only `uvx` and `npx` are allowed
2. **Argument Blacklist**: Blocks dangerous patterns including shells, command chaining,…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-r55h-3rwj-hcmg</guid>
    </item>
  </channel>
</rss>
