CVE-2026-19338
MEDIUM
NVD
CVSS Score
5.3
Severity
MEDIUM
Published
Aug 09, 2026
Vendor
unknown
Description
A vulnerability was identified in automateyournetwork MCPyATS up to 0.1.4. The affected element is the function processGenerateRequest of the file mcp_servers/mermaid/index.ts of the component generate_mermaid_markdown. The manipulation of the argument folder/name leads to path traversal. The attack must be carried out locally.