Vulnerability  ·  2026-10-11

GenOffice MCP HTTP file store: world-readable temp dir leaks uploaded/generated documents past bearer token (CVSS 5.5)

VulnerabilityLow impactGlobalCVE-2026-108582
Verified via NVD REST API (published 2026-10-10, VulnCheck). A filesystem-permission failure in an MCP document-processing server's temp store.
MCP servers handle sensitive data (documents handled by AI); a misconfigured temp dir defeats the transport auth boundary for local attackers on the same host.
The MCP file store is created with world-readable permissions under the system temp dir, so any local user lists it to read client uploads and converted outputs the HTTP token was meant to protect (CWE-732).
genspark-ai/genoffice <= 0.11.505 (packages/cli/src/mcp/files.ts)
Upgrade past 0.11.505; create the file store with owner-only permissions and clean up temp artifacts. See VulnCheck advisory.
NVD CVE-2026-108582NVD REST APIVulnCheck advisory
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →