CVE-2026-50143 | Apify MCP Server up to 0.10.10 URL Verification src/mcp/actors.ts getActorMCPServerURL webServerMcpPath redirect
A vulnerability was found in Apify MCP Server up to 0.10.10. It has been rated as problematic. The affected element is the function getActorMCPServerURL of the file src/mcp/actors.ts of the component URL Verification. Performing a manipulation of the argument webServerMcpPath results in open redirect.
This vulnerability is identified as CVE-2026-50143. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More