Medium severity5.4NVD Advisory· Published Oct 11, 2026
CVE-2026-108756
CVE-2026-108756
Description
Abilityai Trinity through 0.9.5 contains a missing authorization vulnerability in the Telegram router that allows agent-scoped MCP API keys to perform human-only binding operations. Attackers controlling an agent, typically via prompt injection, can send messages through the owner's bot token, replace the binding with their own token, or delete it.
Affected products
2Patches
Vulnerability mechanics
References
4- github.com/Abilityai/trinity/blob/e38c1c0f2567c602541c90c4c92152e99e6ead11/src/backend/routers/telegram.pynvd
- github.com/Abilityai/trinity/blob/e38c1c0f2567c602541c90c4c92152e99e6ead11/src/backend/routers/telegram.pynvd
- hackmd.io/@haind/rJ2OBa8sflnvd
- www.vulncheck.com/advisories/abilityai-trinity-through-0.9.5-missing-authorization-in-telegram-binding-routesnvd
News mentions
0No linked articles in our index yet.