CVE-2026-88257
Description
Improper Input Validation vulnerability in BeamMCP.Schema in ScriptKittyOS beam_mcp allows an MCP client to reach a tool's dispatch function with arguments that violate the input schema the server advertised. BeamMCP.Schema.validate/2 checked type, required, additionalProperties, enum and numeric bounds on the top-level arguments object only. Constraints inside nested objects and on array items (items, minItems, maxItems, minLength, maxLength, pattern, nested required, enum and additionalProperties: false) were advertised by tools/list and never checked at tools/call or prompts/get, and keywords outside the enforced subset (oneOf, anyOf, $ref) were advertised and ignored.
A host whose dispatch code relies on the schema it declared receives values the schema forbids, such as an out-of-range number or an undeclared key inside a nested object. What the host does with such a value decides the impact.
This issue affects beam_mcp: from 0.1.0 before 0.10.1.
Affected products
1- Range: 0.1.0 <= x < 0.10.1
Patches
Vulnerability mechanics
References
5- cna.erlef.org/cves/CVE-2026-88257.htmlnvd
- github.com/ScriptKittyOS/beam_mcp/commit/083838eb8e17fe5f6fcaf761bdbe203110288b0bnvd
- github.com/ScriptKittyOS/beam_mcp/commit/289dbdbad641943b29a3b8d1eb36506cc8cec10anvd
- github.com/ScriptKittyOS/beam_mcp/security/advisories/GHSA-mrg2-4747-fmpwnvd
- osv.dev/vulnerability/EEF-CVE-2026-88257nvd
News mentions
0No linked articles in our index yet.