Metrics
Affected Vendors & Products
Wed, 29 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 28 Apr 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ef10007
Ef10007 mlops Mcp |
|
| Vendors & Products |
Ef10007
Ef10007 mlops Mcp |
Tue, 28 Apr 2026 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in ef10007 MLOps_MCP 1.0.0. This impacts an unknown function of the file fastmcp_server.py of the component save_file Tool. The manipulation of the argument filename/destination results in path traversal. The attack may be performed from remote. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | ef10007 MLOps_MCP save_file Tool fastmcp_server.py path traversal | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-04-28T01:30:26.926Z
Updated: 2026-04-29T14:06:04.600Z
Reserved: 2026-04-27T15:06:41.997Z
Link: CVE-2026-7213
Updated: 2026-04-29T14:05:43.264Z
Status : Deferred
Published: 2026-04-28T02:16:08.780
Modified: 2026-04-29T01:00:01.613
Link: CVE-2026-7213
No data.
ReportizFlow