CVE-2026-30635: Command injection in automagik-genie 2.5.27 MCP server
A command injection vulnerability in the automagik-genie 2.5.27 MCP server allows attackers to execute arbitrary commands through the view_task (view) tool via the readTranscriptFromCommit function in dist/mcp/server.js when a user reads from an external FORGE_BASE_URL.
Disclosed 11 May 2026 · Record updated 13 September 2026
Impact
Attackers can execute arbitrary commands on systems running the affected MCP server when a user reads a task transcript from an externally controlled FORGE_BASE_URL.
Our coverage
No articles linked to this incident yet.
Sources
- nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2026-30635
