obot 版本低于 v0.21.1 的实例在 /mcp-connect 端点上未能正确执行访问控制规则。任何经过身份验证的用户,只要拥有 MCP 服务器的服务器 ID,即可连接至受限的 MCP 服务器。攻击者可利用存储的 OAuth 凭据,绕过授权检查,并通过 MCP 工具调用访问和操作敏感的后端系统。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| obot-platform | obot | 0 ~ 0.21.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-101065 | 9.8 CRITICAL | Obot Quickstart Docker Deployment Unauthenticated Admin Access |
| CVE-2026-101062 | 8.8 HIGH | Obot before v0.23.0 Authentication Bypass via OAuth Dynamic Client Registration |
| CVE-2026-101064 | 7.6 HIGH | Obot before v0.23.0 Server-Side Request Forgery via MCP |
| CVE-2026-101063 | 5.3 MEDIUM | Obot before v0.23.0 Authentication Bypass via Registry API |
No comments yet