CVE-2026-46341: The Apify MCP server enables AI agents to extract data from websites using ready-made scrapers, crawlers, and automation tools available on the Apify Store. Prior to 0.9.21, the fetch-apify-docs to...
Added to the CISA Known Exploited Vulnerabilities catalog on 16 Jul 2026. Vendor: AI/ML. Product: LLM. CVSS score: 6.1.
The Apify MCP server enables AI agents to extract data from websites using ready-made scrapers, crawlers, and automation tools available on the Apify Store. Prior to 0.9.21, the fetch-apify-docs tool in src/tools/common/fetch_apify_docs.ts validates allowlisted documentation domains with String.s...
Required action: Review and patch if applicable to your AI infrastructure.