Sunday, 13 September 2026
8 agent hacks today 7 vs yesterday (1)

CVE-2026-49986: Cortex MCP Arbitrary Code Execution via Environment Variable

The Cortex MCP server prior to version 3.17.1 treats the CLAUDE_PROJECT_DIR environment variable as trusted, allowing attackers to execute arbitrary code by placing marker files in a malicious repository.

Disclosed 14 August 2026 · Record updated 13 September 2026

Impact

Arbitrary code execution with victim's local user process privileges when the open_visualization tool is invoked on a malicious repository.

Our coverage

No articles linked to this incident yet.

Sources

  1. nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2026-49986