SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-78573

CRITICAL · CVSS 9.8 EPSS 0.39%

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

IBM ContextForge MCP Gateway versions 1.0.0 to 1.0.7 are vulnerable to remote attacks that exploit default credentials, potentially granting unauthorized administrative access. This critical vulnerability poses significant risks to the confidentiality and integrity of systems utilizing these versions. Organizations using this software should prioritize immediate remediation to mitigate the risk of exploitation.

CVE
CVE-2026-78573
Severity
CRITICAL
CVSS
9.8
EPSS
0.39%

Original NVD Description

IBM ContextForge MCP Gateway 1.0.0 through 1.0.7 could allow a remote attacker to gain administrative access due to the use of default credentials.