peter bassill · operator
$ cve CVE-2026-23523 JSON

CVE-2026-23523

9.6
CRITICAL · CVSS 3.1 · EPSS 7.2% (pctl 94)

In your normal cycle

Critical by CVSS (9.6), but no sign of active exploitation.

Description

Dive is an open-source MCP Host Desktop Application that enables integration with function-calling LLMs. Prior to 0.13.0, crafted deeplink can install an attacker-controlled MCP server configuration without sufficient user confirmation and can lead to arbitrary local command execution on the victim’s machine. This vulnerability is fixed in 0.13.0.

Scoring

CVSS9.6 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
EPSS7.17% — more likely to be exploited than 94% of all CVEs
WeaknessCWE-94
On CISA KEVno
Public exploitnone known
Published2026-01-16
Last modified2026-06-17

Affected (1)

VendorProduct
openagentplatformdive

References

→ the Explorer  ·  watch your stack  ·  NVD