VulnWatch VulnWatch
← Back to dashboard
High nvd · CVE-2026-13341

CVE-2026-13341: A vulnerability exists in the Kong Konnect Model Context Protocol (MCP) server prior to version 1.0.0, which could allow

Published Jul 3, 2026 CVSS 7.4

A vulnerability exists in the Kong Konnect Model Context Protocol (MCP) server prior to version 1.0.0, which could allow a remote attacker to perform an indirect prompt injection attack and execute unintended API requests.

Affected AI Products

model context protocol prompt injection indirect prompt
Get the weekly digest. Every Monday: top AI security stories of the week. Free.