AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-19244

MEDIUM · CVSS 4.7 EPSS 0.27% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-07 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

A vulnerability in the HKUDS nanobot up to version 0.2.1 allows for improper access controls in the `connect_mcp_servers` function, potentially enabling remote exploitation. Organizations using this software should prioritize upgrading to version 0.3.0 to mitigate the risk, as the exploit is now public and could be leveraged by attackers. This issue affects users relying on the MCP enabledTools Scope Handler and requires immediate attention to secure their systems.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-19244
Severity
MEDIUM
CVSS
4.7
EPSS
0.27%

Original NVD Description

A vulnerability was detected in HKUDS nanobot up to 0.2.1. The affected element is the function connect_mcp_servers of the file nanobot/agent/tools/mcp.py of the component MCP enabledTools Scope Handler. Performing a manipulation results in improper access controls. The attack is possible to be carried out remotely. The exploit is now public and may be used. Upgrading to version 0.3.0 is sufficient to fix this issue. The patch is named 4436. You should upgrade the affected component. Multiple issues were reported to the project. They reacted with a high level of professionalism and kindness: "Both reports describe the same root cause: MCP resource and prompt wrappers could be registered outside the intended enabledTools scope. The registration boundary was corrected".