CVE-2026-55096

CVE-2026-55096 published: fast-mcp-telegram is a Telegram MCP Server. Prior to version 30.1, the send_message/send_message_to_phone MCP tools accept files as a list of http(s) URLs, which the server downloads and attaches to the outgoing Telegram message. Downloads are guarded by _v...

View full NVD advisory → ← Back to CVE watch