CVE-2026-54449 | langbot-app LangBot up to 4.10.7 MCP Server Configuration mcp.py improper authorization
A vulnerability, which was classified as critical, has been found in langbot-app LangBot up to 4.10.7. Affected by this issue is some unknown functionality of the file src/langbot/pkg/provider/tools/loaders/mcp.py of the component MCP Server Configuration. The manipulation leads to improper authorization.
This vulnerability is traded as CVE-2026-54449. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More