CVE-2026-59176 | jordanburke functype 1.4.3 mcp-server index.ts set_functype_version Version inclusion of functionality from untrusted control sphere

SecurityVulns

A vulnerability described as critical has been identified in jordanburke functype 1.4.3. The affected element is the function set_functype_version of the file packages/mcp-server/src/index.ts of the component mcp-server. Such manipulation of the argument Version leads to inclusion of functionality from untrusted control sphere.

This vulnerability is traded as CVE-2026-59176. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More