top of page
perceptive_background_267k.jpg

A vulnerability was detected in ef10007 MLOps_MCP 1.0.0. This impacts an unknown function of the file fastmcp_server.py of the component save_file Tool. The man…

Published:

27 april 2026 om 22:00:00

Alert date:

28 april 2026 om 03:01:19

Source:

nvd.nist.gov

Click to open the original link from this advisory

Web Technologies, Emerging Technologies

A path traversal vulnerability was discovered in ef10007 MLOps_MCP version 1.0.0, specifically affecting the fastmcp_server.py file in the save_file Tool component. The vulnerability allows manipulation of the filename/destination argument to perform path traversal attacks. The attack can be executed remotely and the exploit code is now publicly available. The project maintainer was notified through an issue report but has not responded to the disclosure.

Technical details

Mitigation steps:

Affected products:

ef10007 MLOps_MCP

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page