Export limit exceeded: 404437 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Export limit exceeded: 404437 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Export limit exceeded: 404437 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (1 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-108582 1 Genspark-ai 1 Genoffice 2026-10-11 5.5 Medium
GenOffice through 0.11.505 contains an incorrect permissions vulnerability in its HTTP MCP server file store that allows local unprivileged users to read uploaded and generated documents. Attackers can list the world-readable genoffice-mcp-http directory under the system temporary directory to read client uploads and converted outputs, bypassing the HTTP bearer token.