PatchSiren

NocteDefensor CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

LOW NocteDefensor CVE published 2026-08-09

CVE-2026-19367

A vulnerability was found in NocteDefensor LudusMCP 1.0.24, specifically in the src/tools/rangeConfig.ts file, which is part of an unknown functionality. The manipulation of the Source argument leads to server-side request forgery. The attack can be initiated remotely. Limited information is available on the vulnerability's impact and exploitability. Users of NocteDefensor LudusMCP 1.0.24 should verify th [truncated]