目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CVE-2026-50158— yutu MCP caption-download 任意文件写入漏洞

一分钟漏洞结论

影响对象
eat-pray-ai yutu
利用判断
尚无明确在野利用证据,仍需结合暴露面评估
建议动作
优先检查厂商安全公告和参考链接中的修复版本;无法立即升级时,限制受影响服务暴露并加强监测。

以下是该漏洞描述的中文翻译: Yutu 是一款由 AI 驱动的 YouTube 频道管理与增长工具包。在 0.10.9 版本之前, MCP 工具通过 接受由调用方控制的 参数,并将其传递给 中的 函数。在该函数中, 会在未使用由 支持的 约束边界的情况下,创建或截断该路径对应的文件。 任何能够调用 的主体——包括在 MCP 服务器以默认配置运行(即未启用身份验证)时的本地 HTTP 客户端——都可以将下载的caption字节写入 之外、且可被 yutu 进程写入的任意路径。这可能会覆盖应用程序文件、配置文件、She

CVSS 7.7 · High
获取后续新漏洞提醒 登录后订阅

一、 漏洞 CVE-2026-50158 基础信息

漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
yutu: Arbitrary File Write via MCP `caption-download` Tool
来源: CVE Program / CVE List V5
Vulnerability Description
yutu is an AI-powered toolkit for managing and growing YouTube channels. Prior to 0.10.9, the caption-download MCP tool accepts a caller-controlled file parameter through cmd/caption/download.go and passes it to Caption.Download() in pkg/caption/caption.go, where os.Create() creates or truncates that path without using the pkg.Root confinement boundary backed by YUTU_ROOT. A principal able to invoke caption-download, including a local HTTP client when the MCP server runs with its default authentication-disabled configuration, can write downloaded caption bytes to any path writable by the yutu process outside YUTU_ROOT. This can overwrite application files, configuration, shell startup files, logs, or data and can cause persistent code execution or denial of service depending on the selected writable target. Live caption retrieval also requires usable service credentials and an accessible caption identifier. This issue is fixed in version 0.10.9.
来源: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
来源: CVE Program / CVE List V5
Vulnerability Type
文件名或路径的外部可控制
来源: CVE Program / CVE List V5

受影响产品

厂商 产品 影响版本 CPE 订阅
eat-pray-ai yutu < 0.10.9-dev1 -

二、漏洞 CVE-2026-50158 的公开POC

# POC 描述 源链接 神龙链接
AI 生成 POC 高级

未找到公开 POC。

登录以生成 AI POC

三、漏洞 CVE-2026-50158 的情报信息

登录查看更多情报信息。

CVE-2026-50158 补丁与修复 (1)

CVE-2026-50158 厂商安全公告 (1)

CVE-2026-50158 厂商页面 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2026-50158

暂无评论


发表评论