LOW
dmitriiweb
CVE published 2026-08-10
CVE-2026-19375
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-10T00:17:09.677Z and has not been modified since then. The vulnerability affects dmitriiweb article-scraper-mcp 1.0.0, specifically the function fetch_article in news_scraper_mcp/server.py, leading to server-side request forgery. The attack can be performed remotely, and the exploit is publicly avai [truncated]