Two critical vulnerabilities, CVE-2026-45018 and CVE-2026-45019, have been discovered in Chainlit's MCP module, affecting versions prior to 2.12.0. CVE-2026-45018 allows for unauthenticated remote code execution through the MCP stdio transport by exploiting improper validation of client-supplied commands. CVE-2026-45019 enables unauthenticated server-side request forgery (SSRF) via SSE and streamable-http, allowing attackers to make arbitrary HTTP requests from the server. Both vulnerabilities require the MCP feature to be enabled, which is off by default since version 2.7.0. AI
IMPACT Security patches for development tools like Chainlit are crucial for maintaining the integrity of AI application development pipelines.
RANK_REASON This is a security vulnerability disclosure for a specific software tool, not a frontier model release or significant industry event.
- Chainlit
- CVE-2026-45018
- CVE-2026-45019
- CVSS 3.1
- GHSA-hvfh-5mj3-5f3j
- GHSA-w3fx-mc44-mf6j
- MCP
- SPL Security
- Stephen
- Vipin
AI-generated summary · Google Gemini · from 1 sources. How we write summaries →