CVE-2026-7213 | ef10007 MLOps_MCP 1.0.0 save_file Tool fastmcp_server.py filename/destination path traversal
A vulnerability categorized as critical has been discovered in ef10007 MLOps_MCP 1.0.0. This impacts an unknown function of the file fastmcp_server.py of the component save_file Tool. The manipulation of the argument filename/destination results in path traversal.
This vulnerability was named CVE-2026-7213. The attack may be performed from remote. In addition, an exploit is available.
The project was informed of the problem early through an issue report but has not responded yet.