Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 09 Aug 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in PV-Bhat gemsuite-mcp 1.0.0. Affected by this issue is some unknown functionality of the file src/handlers/unified-gemini.ts of the component gemini_search/gemini_reason/gemini_process/gemini_analyze. The manipulation of the argument file_path/file_paths results in path traversal. The attack must be initiated from a local position. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | PV-Bhat gemsuite-mcp gemini_search unified-gemini.ts path traversal | |
| First Time appeared |
Pv-bhat
Pv-bhat gemsuite-mcp |
|
| Weaknesses | CWE-22 | |
| CPEs | cpe:2.3:a:pv-bhat:gemsuite-mcp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Pv-bhat
Pv-bhat gemsuite-mcp |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-09T20:30:10.206Z
Reserved: 2026-08-09T06:07:45.980Z
Link: CVE-2026-19368
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-09T22:00:10Z
-
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')