Sunday, 13 September 2026
8 agent hacks today 7 vs yesterday (1)

excel-mcp-server path confinement bypass in stdio mode

excel-mcp-server 0.1.8 fails to enforce path confinement when EXCEL_FILES_PATH is unset, allowing attackers to read and write arbitrary files accessible to the process through unchecked file paths in tools.

Disclosed 4 September 2026 · Record updated 13 September 2026

Impact

Attackers can read and write arbitrary files accessible to the process when EXCEL_FILES_PATH environment variable is unset

Our coverage

No articles linked to this incident yet.

Sources

  1. github.comhttps://github.com/advisories/GHSA-xv88-r947-5c3v