CVE-2026-13341

A vulnerability exists in the Kong Konnect Model Context Protocol (MCP) server prior to version 1.0.0, which could allow a remote attacker to perform an indirect prompt injection attack and execute unintended API requests.
Configurations

No configuration.

History

03 Jul 2026, 11:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-03 11:16

Updated : 2026-07-06 19:01


NVD link : CVE-2026-13341

Mitre link : CVE-2026-13341

CVE.ORG link : CVE-2026-13341


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation