CVE-2026-105138 PUBLISHED

Obot 0.12.0 before 0.26.2 Credential Exposure via MCP Catalog Entry API

Assigner: VulnCheck
Reserved: 03.10.2026 Published: 07.10.2026 Updated: 07.10.2026

Obot 0.12.0 before 0.26.2 contains an insufficiently protected credentials vulnerability that allows authenticated users to read static secrets set on MCP catalog entries by admins or power users. Basic users granted an entry by access control rules can request GET /api/all-mcps/entries/{entry_id} to obtain plaintext API keys or tokens and abuse them against backend services.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
CVSS Score: 7.1

Product Status

Vendor obot-platform
Product obot
Versions Default: unaffected
  • affected from 0.12.0 to 0.26.2 (excl.)

Credits

  • Scott Moore - VulnCheck finder

References

Problem Types

  • Insufficiently Protected Credentials CWE