


Perceptive Security
SOC/SIEM Consultancy

excel-mcp-server is a Model Context Protocol server for Excel file manipulation. A path traversal vulnerability exists in excel-mcp-server versions up to and in…
Published:
20 april 2026 om 22:00:00
Alert date:
21 april 2026 om 18:10:28
Source:
nvd.nist.gov
Web Technologies, Enterprise Applications
A path traversal vulnerability in excel-mcp-server versions up to 0.1.7 allows unauthenticated remote attackers to read, write, and overwrite arbitrary files on the host filesystem. The vulnerability occurs when running in SSE or Streamable-HTTP transport mode, where attackers can supply crafted filepath arguments to any of the 25 exposed MCP tool handlers. The server's get_excel_path() function fails to properly enforce directory boundaries by passing absolute paths without validation and joining relative paths without resolution. Combined with zero authentication and default binding to all interfaces (0.0.0.0), this enables trivial remote exploitation. The vulnerability is fixed in version 0.1.8.
Technical details
Mitigation steps:
Affected products:
excel-mcp-server
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-40576
https://github.com/haris-musa/excel-mcp-server/security/advisories/GHSA-j98m-w3xp-9f56
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
