{"id":"CVE-2026-108591","title":"InnoShop 0.9.2 contains a local file disclosure vulnerability that allows authenticated administrators with files_create permission to read server files by abusing the AI Core MCP file_upload tool's source argument","summary":"InnoShop 0.9.2 contains a local file disclosure vulnerability that allows authenticated administrators with files_create permission to read server files by abusing the AI Core MCP file_upload tool's source argument. Attackers can supply …","severity":"medium","cvss":4.4,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N","cwe":["CWE-73"],"published":"2026-10-10","updated":"2026-10-10","sourceUpdated":"2026-10-10T19:16:57.320","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-108591","references":[{"url":"https://github.com/innocommerce/innoshop","label":"disclosure@vulncheck.com"},{"url":"https://github.com/innocommerce/innoshop/blob/6af6a9744414d10d2f5aab516ed0b6c3045a2848/innopacks/aicore/src/Tools/FileUploadTool.php#L55-L89","label":"disclosure@vulncheck.com"},{"url":"https://github.com/innocommerce/innoshop/blob/6af6a9744414d10d2f5aab516ed0b6c3045a2848/innopacks/restapi/src/Services/UploadService.php#L33","label":"disclosure@vulncheck.com"},{"url":"https://hackmd.io/@haind/innoshop-mcp-local-file-read","label":"disclosure@vulncheck.com"},{"url":"https://www.vulncheck.com/advisories/innoshop-0.9.2-local-file-disclosure-via-ai-core-mcp-file-upload-tool","label":"disclosure@vulncheck.com"}],"tags":["nvd"],"ingestedAt":"2026-10-10T19:30:07.152Z","slug":"CVE-2026-108591","body":"## Overview\n\nInnoShop 0.9.2 contains a local file disclosure vulnerability that allows authenticated administrators with files_create permission to read server files by abusing the AI Core MCP file_upload tool's source argument. Attackers can supply file:// or php:// stream wrappers passed to file_get_contents(), storing contents on the public media disk to expose the .env file with APP_KEY and database credentials.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":24,"depthScoreParts":{"impact":24.2,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}