Sunday, 13 September 2026
8 agent hacks today 7 vs yesterday (1)

SSRF in JoeCastrom mcp-chat-studio LLM Models API (CVE-2026-7147)

A server-side request forgery vulnerability (CVE-2026-7147) affects JoeCastrom mcp-chat-studio up to version 1.5.0, where manipulation of the req.query.base_url argument in server/routes/llm.js of the LLM Models API allows remote exploitation. The exploit is public and the project has not responded to the issue report.

Disclosed 27 April 2026 · Record updated 13 September 2026

Impact

Remote attackers can trigger server-side request forgery via a user-controlled base_url parameter; a public exploit is available and the maintainer has not responded.

Our coverage

No articles linked to this incident yet.

Sources

  1. nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2026-7147