CVE-2026-55546 | QWED-AI QWED-MCP up to 0.2.0 Math Engine math_engine.py verify_math_expression code injection

SecurityVulns

A vulnerability classified as critical was found in QWED-AI QWED-MCP up to 0.2.0. This issue affects the function verify_math_expression of the file src/qwed_mcp/engines/math_engine.py of the component Math Engine. Executing a manipulation can lead to code injection.

This vulnerability is registered as CVE-2026-55546. It is possible to launch the attack remotely. No exploit is available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More