CVE-2026-19338 | automateyournetwork MCPyATS up to 0.1.4 generate_mermaid_markdown index.ts processGenerateRequest folder/name path traversal

SecurityVulns

A vulnerability has been found in automateyournetwork MCPyATS up to 0.1.4 and classified as critical. The affected element is the function processGenerateRequest of the file mcp_servers/mermaid/index.ts of the component generate_mermaid_markdown. The manipulation of the argument folder/name leads to path traversal.

This vulnerability is listed as CVE-2026-19338. The attack must be carried out locally. In addition, an exploit is available.VulDB Recent EntriesRead More