Unrated severityNVD Advisory· Published Jul 13, 2026· Updated Jul 13, 2026
lamaalrajih kicad-mcp path_validator.py protection mechanism
CVE-2026-15528
Description
A vulnerability was found in lamaalrajih kicad-mcp up to 3.3.1. This issue affects some unknown processing of the file kicad_mcp/utils/path_validator.py. Performing a manipulation of the argument project_path/schematic_path results in protection mechanism failure. Attacking locally is a requirement. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet.
Affected products
1- Range: <=3.3.1
Patches
Vulnerability mechanics
References
5- github.com/lamaalrajih/kicad-mcp/issues/57mitreexploitissue-tracking
- vuldb.com/cve/CVE-2026-15528mitrethird-party-advisory
- vuldb.com/submit/854531mitrethird-party-advisory
- vuldb.com/vuln/377866mitrevdb-entrytechnical-description
- vuldb.com/vuln/377866/ctimitresignaturepermissions-required
News mentions
0No linked articles in our index yet.