VYPR

obot

by Obot Platform

CVEs (5)

  • CVE-2026-101065CriSep 27, 2026
    risk 0.64cvss 9.8epss —

    Obot is an open-source AI agent/MCP platform. In all versions up to and including commit d7e6970, the Docker quickstart command documented in the README starts the container listening on 0.0.0.0:8080 with authentication disabled by default. When authentication is disabled, every…

  • CVE-2026-101084CriSep 27, 2026
    risk 0.62cvss 9.6epss —

    obot versions before v0.21.1 fail to enforce Access Control Rules on the /mcp-connect endpoint, allowing any authenticated user to connect to restricted MCP servers if they possess the server ID. Attackers can bypass authorization checks to access and manipulate sensitive…

  • CVE-2026-101062HigSep 27, 2026
    risk 0.57cvss 8.8epss —

    Obot before v0.23.0 (affected versions <= v0.22.1) running with OBOT_SERVER_ENABLE_AUTHENTICATION=true exposes OAuth dynamic client registration without authentication and without any restriction on the redirect URIs a client may register. Because the authorization flow…

  • CVE-2026-101064HigSep 27, 2026
    risk 0.49cvss 7.6epss —

    Obot before v0.23.0 contains a server-side request forgery vulnerability in remote MCP server registration that allows privileged users to specify arbitrary URLs without destination validation. Attackers with Power User or higher roles can coerce Obot to make requests to…

  • CVE-2026-101063MedSep 27, 2026
    risk 0.34cvss 5.3epss —

    Obot versions before v0.23.0 fail to enforce authentication on MCP Registry endpoints under /v0.1/* when registry authentication is enabled. Unauthenticated attackers can read registry metadata including server names, descriptions, repository URLs, and connect URLs by sending…