VDB

GO-2026-4638

GO-2026-4638 PUBLISHED

WeKnora Vulnerable to Tool Execution Hijacking via Ambigous Naming Convention In MCP client and Indirect Prompt Injection in github.com/Tencent/WeKnora

Affected Products

VendorProductVersions
github.comTencent/WeKnora0, 0

Timeline

  • Mar 10, 2026 CVE Published
  • Mar 23, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›