HomeCVE Intelligence › CVE-2026-42856
CVSS 7.5 HIGH Vulnerability

CVE-2026-42856: Network-AI missing authentication on MCP HTTP endpoint, which allows unauthenticated priv…

Security Advisory: Missing Authentication for Critical Function in Jovancoding/Network-AI | Field | Value | |---|---| | Project | Jovancoding/Network-AI | | Repository | https://github.com/Jovancoding/Network-AI | | Aff…

7.5CVSS Score
HIGHSeverity
NOCISA KEV
VulnerabilityImpact Type

📋 Vulnerability Details

CVE IDCVE-2026-42856
Vendornpm
Affected Productnetwork-ai
Vulnerability TypeVulnerability
CVSS Score7.5 (HIGH)
Actively Exploited❌ No known exploitation
Patch StatusSee Vendor Advisory →
Reported ByCYBERDUDEBIVASH SENTINEL APEX Intelligence (via github_advisories)

🔬 Technical Analysis

Security Advisory: Missing Authentication for Critical Function in Jovancoding/Network-AI | Field | Value |

|---|---| | Project | Jovancoding/Network-AI | | Repository | https://github.com/Jovancoding/Network-AI | | Affected commit | c344f2053eb0d49395988f803bf92f2a86b2a0d0 | | Affected tested version | 5.1.2 | | Vulnerability type | CWE-306: Missing Authentication for Critical Function | | Severity | High | | Authentication required | None | | Default network exposure | Bind address 0.0.0.0 | | Reporter validation date | 2026-04-21 |

Summary The MCP HTTP transport accepts JSON-RPC tools/call requests with no authentication, session, origin, or token check, and dispatches them directly to the orchestrator's tool registry. The default bind address is 0.0.0.0. As a result,

🎯 Known Indicators of Compromise

{"type":"sha1","value":"c344f2053eb0d49395988f803bf92f2a86b2a0d0","confidence_score":0.9,"first_seen":"2026-05-05","source_count":1} {"type":"ipv4","value":"0.0.0.0","confidence_score":0.88,"first_seen":"2026-05-05","source_count":1} {"type":"url","value":"https://github.com/Jovancoding/Network-AI","confidence_score":0.82,"first_seen":"2026-05-05","source_count":1}

📚 Advisory References

⚡ DETECTION RULES AVAILABLE

Get CVE-2026-42856 Detection Pack

Sigma rules, YARA signatures, IOC table, and SIEM queries for Splunk, Elastic, Sentinel, and Chronicle — deployable in 5 minutes.

✓ Sigma Rules ✓ YARA Pack ✓ IOC Table ✓ SIEM Queries
🛡️ Get Detection Pack → 🔌 Access via API →

🔗 Related Intelligence