A vulnerability exists in the Kong Konnect Model Context Protocol (MCP) server prior to version 1.0.0, which could allow a remote attacker to perform an indirect prompt injection attack and execute unintended API requests.
References
Configurations
No configuration.
History
03 Jul 2026, 11:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-03 11:16
Updated : 2026-07-06 19:01
NVD link : CVE-2026-13341
Mitre link : CVE-2026-13341
CVE.ORG link : CVE-2026-13341
JSON object : View
Products Affected
No product.
CWE
CWE-20
Improper Input Validation
