CVE-2026-7398Disclosure

LOWCVSS 5.5 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A weakness has been identified in florensiawidjaja BioinfoMCP up to 7ada7918b9e515604d3c0ae264d3a9af10bf6e54. This vulnerability affects the function Upload of the file bioinfo_mcp_platform/app.py of the component Upload Endpoint. This manipulation of the argument Name causes path traversal. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available. The project was informed of the problem early through an issue report but has not responded yet.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-22

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-04-29: 2Technical Details · 2026-04-29: 204-29
Signal classification1 categories
Disclosure
2100.0%
Referenced assets2 URLs
Full discourse2 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7398 Path Traversal Vulnerability in florensiawidjaja BioinfoMCP Upload Endpoint https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7398

    Post summary

    The entry announces CVE‑2026‑7398 as a path traversal issue affecting a specific upload endpoint but provides no evidence of exploitation, PoC, or mitigation.

    0000057
    4.0K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-7398 A weakness has been identified in florensiawidjaja BioinfoMCP up to 7ada7918b9e515604d3c0ae264d3a9af10bf6e54. This vulnerability affects the function Upload of the file… https://www.cve.org/CVERecord?id=CVE-2026-7398

    Post summary

    A weakness has been identified in BioinfoMCP affecting the file upload function, with no further details on exploitation, PoC, patch, or active use.

    0000077
    57.3K followersView on X

Explore more