CVE-2026-41679Disclosure(paperclip / paperclipai)

MEDIUMCVSS 10.0 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch paperclip paperclipai systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

Paperclip is a Node.js server and React UI that orchestrates a team of AI agents to run a business. Prior to version 2026.416.0, an unauthenticated attacker can achieve full remote code execution on any network-accessible Paperclip instance running in `authenticated` mode with default configuration. No user interaction, no credentials, just the target's address. The chain consists of six API calls. The attack is fully automated, requires no user interaction, and works against the default deployment configuration. Version 2026.416.0 patches the issue.

4.3/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-287CWE-862CWE-1188

Priority

MEDIUM

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • paperclipai
  • paperclipai\/server

Threat summary

  • Public PoC and exploit tooling are both present
  • Patch or workaround signal is available
  • 16 mentions across 9 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 2 signals
  • Patch or workaround mentioned in 4 signals
  • Technical details provided in 13 signals
  • Disclosure: 11 classified signals
  • General: 1 classified signal
  • Peaked 8d ago at 6 mentions (2026-04-23); latest day: 1
  • 16 total mentions across 9 days

Affected systems

Vendors
Products
paperclipaipaperclipai\/server

Deep dive

Activity timeline16 mentions / 9d
02356Mentions · 2026-04-23: 6Mentions · 2026-04-24: 1Mentions · 2026-04-26: 1Mentions · 2026-04-28: 1Mentions · 2026-08-06: 3Mentions · 2026-08-07: 1Mentions · 2026-08-13: 1Mentions · 2026-09-10: 1Mentions · 2026-09-22: 1PoC Mentioned / Linked · 2026-04-24: 1PoC Mentioned / Linked · 2026-09-10: 1Exploit Tool / Code · 2026-04-24: 1Patch / Workaround · 2026-04-23: 2Patch / Workaround · 2026-04-24: 1Patch / Workaround · 2026-08-13: 1Technical Details · 2026-04-23: 3Technical Details · 2026-04-24: 1Technical Details · 2026-04-26: 1Technical Details · 2026-04-28: 1Technical Details · 2026-08-06: 3Technical Details · 2026-08-07: 1Technical Details · 2026-08-13: 1Technical Details · 2026-09-10: 1Technical Details · 2026-09-22: 104-2304-2404-2604-2808-0608-0708-1309-1009-22
Signal classification4 categories
Disclosure
1168.8%
Patch
318.8%
General
16.3%
PoC
16.3%
Referenced assets10 URLs
Classification over time
DateTotalLabels
2026-04-236
Disclosure3General1Patch2
2026-04-241
Disclosure1
2026-04-261
Disclosure1
2026-04-281
Disclosure1
2026-08-063
Disclosure3
2026-08-071
Disclosure1
2026-08-131
Patch1
2026-09-101
PoC1
2026-09-221
Disclosure1
Full discourse16 posts
  • Upwind Security MDR@UpwindMDR
    Patch

    🚨 Paperclip RCE (CVE-2026-41679) - CVSS 10.0 No auth. No interaction. Just API calls → full system compromise. This is critical. Patch now.

    Post summary

    The post alerts about a critical Paperclip RCE (CVE-2026-41679) with CVSS 10.0 that requires a patch immediately.

    00040121
    41 followersView on X
  • pdnuclei-bot@pdnuclei_bot
    PoC

    🚨 CVE-2026-41679 - critical 🚨 Paperclip - Remote Code Execution > Paperclip < 2026.416.0 contains a remote code execution caused by a chain of six unau... 👾 https://cloud.projectdiscovery.io/library/CVE-2026-41679 @pdnuclei #NucleiTemplates #cve

    Post summary

    CVE‑2026‑41679 is a critical RCE flaw in Paperclip versions older than 2026.416.0, with a Nuclei template PoC linked; no patch, active exploitation or false‑positive claim is reported.

    00012308
    1.3K followersView on X
  • CyberTLDR@CyberTLDR
    Disclosure

    1/3 A perfect 10.0 just dropped. Paperclip, the open source control plane for AI agents, has an unauthenticated RCE (CVE-2026-41679) that lets attackers run commands on your server with no account and no clicks. Are you patched? #CyberSecurity #InfoSec #CVE #AI https://t.co/Fap4ov3ZsC

    Post summary

    The post announces an unauthenticated remote code execution vulnerability (CVE-2026-41679) in Paperclip’s AI-control plane that lets attackers execute arbitrary commands without credentials, but offers no patch, PoC, or exploit details.

    2001053
    40 followersView on X
  • Checkmarx Zero@CheckmarxZero
    Disclosure

    A Critical unauthenticated #RCE via Import Authorization Bypass (CVE-2026-41679) was found in #Paperclip with a CVSS score of 10.0. The issue was found in @paperclipai/server npm package affecting all versions prior to v2026.416.0 and canary/v2026.410.0-canary.1. The vulnerability was disclosed with a working PoC that chains 6 API requests leading to full control of the paperclip server OS. Stay safe by upgrading paperclipai to v2026.416.0 or `canary/v2026.424.0-canary.0`. In times where agents are given broad permissions to run systems, it's more important than ever to know what you're running, who built it, and whether the front door is actually locked. More details here: https://devhub.checkmarx.com/cve-details/CVE-2026-41679/

    Post summary

    The post announces CVE-2026-41679, a critical unauthenticated RCE via import authorization bypass, provides a working PoC, and advises upgrading to a patched release.

    01020172
    242 followersView on X
  • White Rabbitx 🏴‍☠️@TheRabbitPy
    Patch

    🧨 CVE‑2026‑41679 — Paperclip (Node.js AI‑orchestration suite) is vulnerable to unauthenticated RCE when running in authenticated mode with default config, via a short API chain; fully automated, no creds, just the target IP. Patch immediately. Source: https://cve.org/CVERecord?id=CVE-2026-41679

    Post summary

    The post alerts that Paperclip’s default configuration allows unauthenticated RCE through a short API chain and urges an immediate patch.

    1001070
    1.7K followersView on X
  • Mark E. Jeftovic@jeftovic
    General

    I hope everyone running Paperclip agents are aware of CVE-2026-41679 & CVE-2026-41208

    Post summary

    The user simply alerts Paperclip agents about two CVE numbers without providing details or guidance.

    00110729
    10.0K followersView on X
  • iototsecnews@iototsecnews
    Patch

    Paperclip の脆弱性 CVE-2026-41679 などが FIX:Admin アクセス奪取の恐れ https://iototsecnews.jp/2026/08/06/critical-paperclip-vulnerabilities-allow-attackers-to-gain-admin-access/ AI エージェント運用の効率化を担う Paperclip において、権限管理や認証処理の不備に由来する深刻な問題が明らかになりました。権限の検証が不十分なインポート処理や信頼設定の弱点を突かれると、外部から不正に権限を奪われ、システム上で任意のコマンドを実行される恐れがあります。この事態により、内部データや機密情報の流出、開発環境の乗っ取りといった重大な被害へ繋がる危険性があります。対策として、公開された修復済みのバージョンへ速やかにアップデートを実施することが重要です。また、不要なアカウント登録の制限や、設定ファイルの厳格な確認を徹底し、安全に利用するためにも運用体制を再点検することが求められます。 #CVE202641679 #Paperclip #Vulnerability

    Post summary

    The article announces the Paperclip CVE-2026-41679 flaw, outlines its technical nature, and focuses on remedial actions such as applying the published patch and tightening account settings.

    01000230
    507 followersView on X
  • CVETodo@CveTodo
    Disclosure

    A critical authorization bypass in the Paperclip AI agent management platform allowed unauthenticated attackers to achieve full remote code execution on any network-accessible... https://cvetodo.com/news/cve-2026-41679-max-severity-flaw-in-paperclip-ai-platform-enabled-unauthenticated-remote-code-execut #Cybersecurity #InfoSec #CVE #CriticalVulnerability #RemoteCodeExecution https://t.co/xcvfIwjpIy

    Post summary

    The tweet announces a critical authorization bypass in Paperclip AI’s agent management platform that allows unauthenticated attackers to execute remote code across the network.

    0001053
    19 followersView on X
  • IntegSec@integ_sec
    Disclosure

    CVE-2026-41679: Paperclip AI Orchestration Unauthenticated Remote Code Execution - What It Means for Your Business and How to Respond https://hubs.li/Q04y3kjt0

    Post summary

    The post announces CVE‑2026‑41679 as an unauthenticated remote code execution in Paperclip AI Orchestration and outlines response considerations, but provides no explicit patch, exploit, or evidence of active exploitation.

    0000032
    35 followersView on X
  • TECHEPAGES@techepages
    Disclosure

    ⚠️ Oasis disclosed three severe vulnerabilities in Paperclip, enabling unauthenticated RCE and agent takeover. 🔹 CVE-2026-41679 (CVSS 10.0): unauthenticated attacker can execute arbitrary commands via open registration + import route 🔹 CVSS 8.3: missing authentication checks → cross-tenant data leakage & reconnaissance 🔹 CVSS 9.6: DNS rebinding exploit in local_trusted mode → silent agent execution with developer privileges

    Post summary

    Oasis publicly disclosed three severe Paperclip vulnerabilities, including a CVSS 10.0 unauthenticated RCE through open registration, a CVSS 8.3 cross‑tenant data leak, and a CVSS 9.6 DNS rebinding exploit that can silently deploy an agent with developer privileges.

    0000071
    36 followersView on X
  • Cybersecurity News Everyday@TweetThreatNews
    Disclosure

    Critical Paperclip flaw, CVE-2026-41679, let remote attackers self-register, approve a CLI challenge, and gain code execution with server permissions. Oasis Security also found data exposure and DNS rebinding issues. #Paperclip #CVE202641679 https://www.hendryadrian.com/critical-paperclip-flaw-allowed-admin-access-code-execution/

    Post summary

    The post announces CVE-2026-41679, detailing how remote attackers can self-register and execute code with server permissions, and also highlights related data exposure and DNS rebinding issues.

    00000223
    4.5K followersView on X
  • cybersecuritypath@cybrsecpath
    Disclosure

    CVE-2026-41679: Paperclip AI RCE Flaw Lets Attackers Own Servers https://thecybrdef.com/cve-2026-41679-paperclip-ai-rce-vulnerability/ #CVE202641679 #RCE #CyberSecurity

    Post summary

    Paperclip AI’s CVE-2026-41679 is an RCE vulnerability that allows attackers to take full control of servers, as announced in a recent disclosure.

    0000054
    7 followersView on X
  • cybersecuritypath@cybrsecpath
    Disclosure

    CVE-2026-41679: Paperclip AI RCE Flaw Lets Attackers Own Servers https://thecybrdef.com/cve-2026-41679-paperclip-ai-rce-vulnerability/ #CVE202641679 #RCE #CyberSecurity

    Post summary

    An article announces CVE‑2026‑41679 as an RCE flaw in Paperclip AI, providing the CVE name, brief description, and a link, but no exploit code, PoC, or mitigation.

    0000046
    7 followersView on X
  • cybersecuritypath@cybrsecpath
    Disclosure

    CVE-2026-41679: Paperclip AI RCE Flaw Lets Attackers Own Servers https://thecybrdef.com/cve-2026-41679-paperclip-ai-rce-vulnerability/ #CVE202641679 #RCE #CyberSecurity

    Post summary

    The post announces an RCE vulnerability in Paperclip AI but provides only minimal technical detail.

    0000059
    6 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-41679 Paperclip is a Node.js server and React UI that orchestrates a team of AI agents to run a business. Prior to version 2026.416.0, an unauthenticated attacker can achie… https://www.cve.org/CVERecord?id=CVE-2026-41679

    Post summary

    The post announces CVE-2026-41679 affecting Paperclip, noting an unauthenticated vulnerability in versions prior to 2026.416.0, but provides no proof of concept, exploit details, or remediation guidance.

    0000095
    57.2K followersView on X
  • CTIWatch@ctiwatchcloud
    Disclosure

    🔍 Today's Top Vulnerabilities 🔴 CVE-2026-41679 | CVSS 10.0 🔴 CVE-2026-41228 | CVSS 9.9 🔴 CVE-2026-6235 | CVSS 9.8 🔗 http://ctiwatch.cloud/vulnerabilities #CVE #Vulnerability #ThreatIntel

    Post summary

    The post lists three newly disclosed high‑severity CVEs and their CVSS scores, providing a link to a resource for more information.

    0000095
    5.6K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Apppaperclippaperclipai-node.js-
Apppaperclippaperclipai\/server-node.js-

Explore more