High severity8.1NVD Advisory· Published Jun 19, 2026· Updated Jun 23, 2026
CVE-2026-49291
CVE-2026-49291
Description
mcp-memory-service is a semantic memory layer for AI applications. Prior to version 10.65.3, the HTTP MCP JSON-RPC endpoint at /mcp requires only OAuth read scope for all requests, then dispatches tools/call directly to handlers that include mutating tools. A read-only OAuth client can call store_memory and delete_memory through MCP even though the corresponding REST endpoints require write scope. Version 10.65.3 patches the issue.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
mcp-memory-servicePyPI | < 10.65.3 | 10.65.3 |
Affected products
1- Range: <10.65.3
Patches
Vulnerability mechanics
References
6- github.com/advisories/GHSA-2r68-g678-7qr3ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2026-49291ghsaADVISORY
- github.com/doobidoo/mcp-memory-service/security/advisories/GHSA-2r68-g678-7qr3nvdWEB
- pypi.org/project/mcp-memory-service/10.65.3nvdWEB
- web.archive.org/web/20260508112116/https://github.com/doobidoo/mcp-memory-serviceghsaWEB
- web.archive.org/web/20260508112116/https://github.com/doobidoo/mcp-memory-service/nvd
News mentions
0No linked articles in our index yet.