A flaw has been found in NightTrek Ollama-mcp up to 80cf2e17cfc144963a475b619093a2d13c13dbc9. This affects an unknown part of the file src/index.ts. This manipulation of the argument name/modelfile/s…
Medium CVSS 5.3
Summary
A flaw has been found in NightTrek Ollama-mcp up to 80cf2e17cfc144963a475b619093a2d13c13dbc9. This affects an unknown part of the file src/index.ts. This manipulation of the argument name/modelfile/source/destination causes command injection. The attack can only be executed locally. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The project was informed of the problem early through an issue r…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://github.com/NightTrek/Ollama-mcp/
- https://github.com/NightTrek/Ollama-mcp/issues/5
- https://vuldb.com/cve/CVE-2026-19334
- https://vuldb.com/submit/865257
- https://vuldb.com/vuln/387170
- https://vuldb.com/vuln/387170/cti
Timeline
- nvd_ingest NVD