
CVE-2026-12112 is live. If you run affected systems, read this now. A flaw was found in the foreman-mcp-server. A session management vulnerability in the MCP Server allows unauthen... New week. Sharper than the last.
Post summary
CVE‑2026‑12112 describes a session‑management flaw in foreman‑mcp‑server allowing unauthenticated access; no PoC, exploit tools, active exploitation, or patch information are provided.

