CVE-2026-50757

Directory Traversal vulnerability in DayuanJiang next-ai-draw-io 0.4.13 allowsa remote attacker to execute arbitrary code via the nex-ai-draw-io/mcp-server
Configurations

No configuration.

History

No history.

Information

Published : 2026-07-21 20:17

Updated : 2026-07-22 18:17


NVD link : CVE-2026-50757

Mitre link : CVE-2026-50757

CVE.ORG link : CVE-2026-50757


JSON object : View

Products Affected

No product.

CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')