CVE-2026-77243 | sooperset mcp-atlassian up to 0.21.x Tool Invocation _call_tool_mcp ENABLED_TOOLS/TOOLSETS improper authorization

SecurityVulns

A vulnerability was found in sooperset mcp-atlassian up to 0.21.x. It has been declared as critical. This issue affects the function _call_tool_mcp of the component Tool Invocation. Executing a manipulation of the argument ENABLED_TOOLS/TOOLSETS can lead to improper authorization.

This vulnerability is registered as CVE-2026-77243. It is possible to launch the attack remotely. No exploit is available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More