Security: Jovancoding/Network-AI
Security Advisories
View known security vulnerabilities and report new vulnerabilities privately to maintainers.
-
Improper Neutralization of Special Elements used in an OS Command in network-aiGHSA-qw6v-5fcf-5666 published
Jun 2, 2026 by JovancodingCritical -
Network-AI: CVE-2026-46701 fix incomplete — empty default secret still authorizes all requestsGHSA-r78r-rwrf-rjwp published
May 23, 2026 by JovancodingCritical -
Unauthenticated Cross-Origin MCP Tool Invocation via Empty Default SecretGHSA-j3vx-cx2r-pvg8 published
May 16, 2026 by JovancodingHigh -
Missing authentication on MCP HTTP endpoint allows unauthenticated privileged tool callsGHSA-fj4g-2p96-q6m3 published
Apr 24, 2026 by JovancodingHigh