Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-104634— beam_mcp: JSON boolean and null tool arguments reach dispatch as strings

Quick assessment

Affected
ScriptKittyOS beam_mcp
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

漏洞描述:BeamMCP.Server 中存在不正确的类型转换或强制转换漏洞 在 ScriptKittyOS 的 项目中,存在一个“不正确的类型转换或强制转换”(Incorrect Type Conversion or Cast)漏洞。该漏洞允许 MCP 客户端发送的 JSON 类型参数 、 和 ,在传递到主机(host)的分发函数时,被错误地转换为字符串 、 和 。 具体来说,在 函数验证某个值为布尔类型后, 函数会将所有参数逐一通过 函数处理。该函数中的原子(atom)条款会将 、 和 转换为字符串。在 Eli

CVSS 2.3 · Low

Possible ATT&CK Techniques 1 AI

T1190 · Exploit Public-Facing Application

Affected Version Matrix 2

VendorProduct Version RangeStatus
ScriptKittyOS beam_mcp 0.1.0< 0.10.1 affected
083838eb8e17fe5f6fcaf761bdbe203110288b0b< 289dbdbad641943b29a3b8d1eb36506cc8cec10a affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-104634

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
beam_mcp: JSON boolean and null tool arguments reach dispatch as strings
Source: CVE Program / CVE List V5
Vulnerability Description
Incorrect Type Conversion or Cast vulnerability in BeamMCP.Server in ScriptKittyOS beam_mcp allows an MCP client's JSON true, false and null tool arguments to reach the host's dispatch function as the strings "true", "false" and "nil". After BeamMCP.Schema.validate/2 accepted a value as a boolean, normalize_arguments/2 passed every argument through to_json_value/1, whose atom clause converts true, false and nil to strings. A string is truthy in Elixir, so a host that tests a boolean argument, for example if args.dry_run, takes the opposite branch for false, and a guard such as confirm: false reads as set. The client controls the argument and could send true directly, so the practical impact is limited to hosts whose behaviour on false differs from their behaviour on true, and to any policy layer in front of the server that permits false but refuses true. The same normalisation applies to prompts/get arguments, which exist from 0.5.0. This issue affects beam_mcp: from 0.1.0 before 0.10.1.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
Source: CVE Program / CVE List V5
Vulnerability Type
不正确的类型转换
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
ScriptKittyOS beam_mcp 0.1.0 ~ 0.10.1 cpe:2.3:a:scriptkittyos:beam_mcp:*:*:*:*:*:*:*:*
ScriptKittyOS beam_mcp 083838eb8e17fe5f6fcaf761bdbe203110288b0b ~ 289dbdbad641943b29a3b8d1eb36506cc8cec10a cpe:2.3:a:scriptkittyos:beam_mcp:*:*:*:*:*:*:*:*

II. Public POCs for CVE-2026-104634

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-104634

请登录查看更多情报信息。

Vendor Advisories for CVE-2026-104634 (2)

Other References for CVE-2026-104634 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2026-104634

No comments yet


Leave a comment