← العودة للجدول
CVE-2026-19984
CVE-2026-19984 — A flaw has been found in jkawamoto mcp-florence2 up to 0.3.13. Affected by this
📅 2026-08-17
🟡 Medium 🔥 No NVD Exploit Web CVSS 6.3

📋 الوصف الكامل

A flaw has been found in jkawamoto mcp-florence2 up to 0.3.13. Affected by this issue is the function get_images of the file src/mcp_florence2/__init__.py. This manipulation of the argument src causes server-side request forgery. The attack may be initiated remotely. The exploit has been published and may be used. It is recommended to change the configuration settings. The vendor explains: "F

💻 الأنظمة المتأثرة

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-19984

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-19984 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ← 🔍 Valters IT ←