Sunday, 13 September 2026
8 agent hacks today 7 vs yesterday (1)

CVE-2026-30635: Command injection in automagik-genie 2.5.27 MCP server

A command injection vulnerability in the automagik-genie 2.5.27 MCP server allows attackers to execute arbitrary commands through the view_task (view) tool via the readTranscriptFromCommit function in dist/mcp/server.js when a user reads from an external FORGE_BASE_URL.

Disclosed 11 May 2026 · Record updated 13 September 2026

Impact

Attackers can execute arbitrary commands on systems running the affected MCP server when a user reads a task transcript from an externally controlled FORGE_BASE_URL.

Our coverage

No articles linked to this incident yet.

Sources

  1. nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2026-30635