← العودة للجدول
CVE-2026-74842
CVE-2026-74842 | Kira-Pgr PromptShopMCP up to 5bc0cd17358e19a5415d11a531088170d7b81452 Image-Toolkit-MCP-Server server.py download_image image_url server-side request forgery
📅 2026-08-17
🟡 Medium 🔥 No VulDB Exploit Exploit

📋 الوصف الكامل

A vulnerability, which was classified as critical, has been found in Kira-Pgr PromptShopMCP up to 5bc0cd17358e19a5415d11a531088170d7b81452. Affected is the function download_image of the file server.py of the component Image-Toolkit-MCP-Server. Performing a manipulation of the argument image_url results in server-side request forgery. This vulnerability was named CVE-2026-74842. The attack may be

💻 الأنظمة المتأثرة

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-74842

📡 المصدر

VulDB

✅ الحلول والتخفيف

Apply vendor security patch

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ← 🔍 Valters IT ←