LOW 1.9 NVD
CVE-2026-78430
A vulnerability was detected in sworddut mcp-ffmpeg-helper 0.1.0/0.1.1/0.2.1. This affects the function handleToolCall of the file src/tools/handlers.ts of the
A vulnerability was detected in sworddut mcp-ffmpeg-helper 0.1.0/0.1.1/0.2.1. This affects the function handleToolCall of the file src/tools/handlers.ts of the component Tool Handler. The manipulation of the argument format results in os command injection. Attacking locally is a requirement. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
References
- https://github.com/sworddut/mcp-ffmpeg-helper/
- https://github.com/sworddut/mcp-ffmpeg-helper/issues/6
- https://vuldb.com/cve/CVE-2026-78430
- https://vuldb.com/submit/886393
- https://vuldb.com/vuln/394711
This low severity vulnerability with a CVSS score of 1.9 was published on 2026-08-24 via NVD.
vulnfeed aggregates 11313 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.