CYBERHAWK / CVE / CVE-2026-7237

CVE-2026-7237

scaffold-mcp

HIGH CVSS 7.3 ai vibe

The flaw

Path traversal in write-to-file tool via file_path parameter.

What to do

Update to version 1.1.0

▸ Scan my repo for CVE-2026-7237

References

First seen 2026-05-01 · Tracked by PickBits CyberHawk · Weekly CVE digest