All 1 CVE vulnerabilities found in obsidian-web-mcp, with AI-generated Chinese analysis, references, and POCs.
Vendor: jimprosser
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-54618 | Obsidian Web MCP: Unauthenticated vault access: /oauth/authorize auto-approves without authenticating the user CWE-306 | 9.4 | Critical | 2026-09-17 |
All 1 known CVE vulnerabilities affecting obsidian-web-mcp with full Chinese analysis, references, and POCs where available.