Vulnerability  ·  2026-08-09

mcp-bridge-api — command injection in MCP Servers endpoint via command/args parameters

VulnerabilityHigh impactGlobalCVE-2026-19263
NVD published CVE-2026-19263 (CVSS 7.3, High) on August 8, 2026, describing unsanitized command/args handling in mcp-bridge-api's Servers Endpoint leading to remote command injection.
Another instance of the recurring MCP-server command-injection pattern where LLM-agent-controlled tool parameters flow unsanitized into shell execution; low broad-deployment footprint keeps this at Tier C but the underlying bug class is a widespread risk across MCP bridge implementations.
The mcp-bridge.js Servers Endpoint fails to sanitize the command/args parameters, allowing a remote caller to inject and execute arbitrary OS commands.
INQUIRELAB mcp-bridge-api (up to commit b30a82aa1d1d1139e0de846c41c8aadee6e06114)
No fixed version available at time of publication (rolling release); restrict network access to the Servers Endpoint and monitor upstream repository for a patch.
NVD - CVE-2026-19263INCIBE-CERT alert
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →