VYPR
Medium severity5.4NVD Advisory· Published Oct 11, 2026

CVE-2026-108756

CVE-2026-108756

Description

Abilityai Trinity through 0.9.5 contains a missing authorization vulnerability in the Telegram router that allows agent-scoped MCP API keys to perform human-only binding operations. Attackers controlling an agent, typically via prompt injection, can send messages through the owner's bot token, replace the binding with their own token, or delete it.

Affected products

2
  • Abilityai/Trinityreferences2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: <=0.9.5

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.