Obot 在 v0.23.0 版本之前,当启用注册表认证时,未能对 /v0.1/* 路径下的 MCP 注册表端点强制执行身份认证。未认证的攻击者可以通过向 /v0.1/servers 发送 GET 请求,读取注册表的元数据,包括服务器名称、描述、仓库 URL 和连接 URL。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| obot-platform | obot | 0 ~ 0.23.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-101065 | 9.8 CRITICAL | Obot Quickstart Docker Deployment Unauthenticated Admin Access |
| CVE-2026-101084 | 9.6 CRITICAL | obot before v0.21.1 Authorization Bypass via /mcp-connect |
| CVE-2026-101062 | 8.8 HIGH | Obot before v0.23.0 Authentication Bypass via OAuth Dynamic Client Registration |
| CVE-2026-101064 | 7.6 HIGH | Obot before v0.23.0 Server-Side Request Forgery via MCP |
No comments yet