CVE-2026-7644

HIGH

ChatGPTNextWeb NextChat actions.ts addMcpServer improper authorization

Title source: cna
STIX 2.1

Description

A vulnerability has been found in ChatGPTNextWeb NextChat up to 2.16.1. Affected is the function addMcpServer of the file app/mcp/actions.ts. The manipulation leads to improper authorization. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

References (5)

Core 5
Core References
Vdb Entry, Technical Description vdb-entry technical-description
VDB-360756 | ChatGPTNextWeb NextChat actions.ts addMcpServer improper authorization
https://vuldb.com/vuln/360756
Signature, Permissions Required signature permissions-required
VDB-360756 | CTI Indicators (IOB, IOC, TTP, IOA)
https://vuldb.com/vuln/360756/cti
Third Party Advisory third-party-advisory
Submit #806851 | ChatGPTNextWeb NextChat 2.16.1 Unauthenticated Remote Code Execution
https://vuldb.com/submit/806851

Scores

CVSS v3 7.3
EPSS 0.0031
EPSS Percentile 22.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-266 CWE-285
Status published
Products (2)
ChatGPTNextWeb/NextChat 2.16.0
ChatGPTNextWeb/NextChat 2.16.1
Published May 02, 2026
Tracked Since May 02, 2026