Vulnerability Bulletins

CVE-2026-18486

   
Affected software IBM
 
IBM ContextForge MCP Gateway <= v1.0.7 MCP Context Forge could allow a remote authenticated attacker to obtain sensitive credentials and escalate privileges due to improper validation of jq filters.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-18486