Metrics
Affected Vendors & Products
Tue, 28 Apr 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ef10007
Ef10007 mlops Mcp |
|
| Vendors & Products |
Ef10007
Ef10007 mlops Mcp |
Tue, 28 Apr 2026 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in ef10007 MLOps_MCP 1.0.0. This impacts an unknown function of the file fastmcp_server.py of the component save_file Tool. The manipulation of the argument filename/destination results in path traversal. The attack may be performed from remote. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | ef10007 MLOps_MCP save_file Tool fastmcp_server.py path traversal | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-28T01:30:26.926Z
Reserved: 2026-04-27T15:06:41.997Z
Link: CVE-2026-7213
No data.
Status : Received
Published: 2026-04-28T02:16:08.780
Modified: 2026-04-28T02:16:08.780
Link: CVE-2026-7213
No data.
OpenCVE Enrichment
Updated: 2026-04-28T09:16:32Z