CVE-2026-13341

A vulnerability exists in the Kong Konnect Model Context Protocol (MCP) server prior to version 1.0.0, which could allow a remote attacker to perform an indirect prompt injection attack and execute unintended API requests.
Configurations

No configuration.

History

No history.

Information

Published : 2026-07-03 11:16

Updated : 2026-07-06 19:01


NVD link : CVE-2026-13341

Mitre link : CVE-2026-13341

CVE.ORG link : CVE-2026-13341


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation