PatchSiren

PV-Bhat CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM PV-Bhat CVE published 2026-08-09

CVE-2026-19368

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-09T21:16:59.193Z and has not been modified since then. CVE-2026-19368 is a path traversal vulnerability in gemsuite-mcp 1.0.0, affecting the file src/handlers/unified-gemini.ts. The vulnerability is triggered by manipulation of the file_path/file_paths argument, requiring local access and authentica [truncated]