CRITICAL 9.2 NVD
CVE-2026-91988
atomic-agents-stack before 1.1.0 accepts cleartext HTTP schemes in the HTTP MCP server-registry backend factory, allowing network man-in-the-middle attackers to
atomic-agents-stack before 1.1.0 accepts cleartext HTTP schemes in the HTTP MCP server-registry backend factory, allowing network man-in-the-middle attackers to rewrite catalog responses. Attackers can inject arbitrary command and argument values that are spawned as local subprocesses by MCPClientPool to achieve code execution on the agent host.
References
- https://github.com/dep0we/atomic-agents-stack/security/advisories/GHSA-xhcr-cqfr-m3hv
- https://www.vulncheck.com/advisories/atomic-agents-stack-before-1.1.0-remote-code-executio
This critical severity vulnerability with a CVSS score of 9.2 was published on 2026-09-15 via NVD.
Risk Timeline
CVE Disclosed2026-09-15 · -1 days ago
Remediation Resources
vulnfeed aggregates 13549 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.