CVE-2026-14539 | Google mcp-toolbox up to 1.4.0 HTTP handler io.ReadAll allocation of resources

SecurityVulns

A vulnerability was found in Google mcp-toolbox up to 1.4.0. It has been rated as problematic. Affected by this issue is the function io.ReadAll of the component HTTP handler. This manipulation causes allocation of resources.

The identification of this vulnerability is CVE-2026-14539. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More