Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 08 Aug 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in abrinsmead mindpilot-mcp 0.5.0. Affected by this issue is some unknown functionality of the component HistoryService. This manipulation of the argument ID causes path traversal. The attack needs to be launched locally. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | abrinsmead mindpilot-mcp HistoryService path traversal | |
| First Time appeared |
Abrinsmead
Abrinsmead mindpilot-mcp |
|
| Weaknesses | CWE-22 | |
| CPEs | cpe:2.3:a:abrinsmead:mindpilot-mcp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Abrinsmead
Abrinsmead mindpilot-mcp |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-08T13:15:08.732Z
Reserved: 2026-08-07T15:37:41.134Z
Link: CVE-2026-19287
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-08T14:30:06Z