Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
9.1
CVE-2026-11718
- EPSS 0.19%
- Veröffentlicht 18.06.2026 11:52:42
- Zuletzt bearbeitet 17.08.2026 16:04:32
An authentication bypass vulnerability exists in the generic opaque token validation path (validateOpaqueToken) of googleapis/mcp-toolbox. When the toolbox validates an opaque token via an OAuth 2.0 introspection endpoint (RFC 7662), it decodes the ...
9.1
CVE-2026-11717
- EPSS 0.18%
- Veröffentlicht 18.06.2026 11:50:23
- Zuletzt bearbeitet 17.08.2026 16:13:01
An authentication bypass vulnerability exists in the generic opaque token validation path (validateOpaqueToken) of googleapis/mcp-toolbox. When verifying an unparsed opaque token via an OAuth 2.0 introspection endpoint (RFC 7662), the toolbox decode...