Security Advisory

CVE-2026-15528

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-13 03:15:09
Last updated 2026-07-13 15:16:42
Assigner VulDB
CVSS score 4.8
State PUBLISHED

Description

A vulnerability was found in lamaalrajih kicad-mcp up to 3.3.1. This issue affects some unknown processing of the file kicad_mcp/utils/path_validator.py. Performing a manipulation of the argument project_path/schematic_path results in protection mechanism failure. Attacking locally is a requirement. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet.