{"data":{"id":"8852d77d-386b-4750-83da-d9269947be55","title":"CVE-2026-108756: Abilityai Trinity through 0.9.5 contains a missing authorization vulnerability in the Telegram router that allows…","summary":"Abilityai Trinity through 0.9.5 has a missing authorization flaw in its Telegram router. Agent-scoped MCP API keys can perform binding operations that are meant only for humans. An attacker who controls an agent, typically through prompt injection, can send messages through the owner's bot token, replace the binding with their own token, or delete the binding.","solution":"N/A -- no mitigation discussed in source.","labels":["security"],"sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-108756","publishedAt":"2026-10-11T13:17:20.680Z","cveId":"CVE-2026-108756","cweIds":["CWE-862"],"cvssScore":"5.4","cvssSeverity":"medium","severity":"medium","attackType":["prompt_injection"],"issueType":"vulnerability","affectedPackages":null,"affectedPackageNames":null,"affectedPackageRefs":null,"affectedVendors":[],"affectedVendorsRaw":["Abilityai Trinity"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":"Abilityai Trinity missing authorization in Telegram router binding operations","headlinePromptVersion":"h1","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L","attackVector":"network","attackComplexity":"low","privilegesRequired":"low","userInteraction":"none","exploitMaturity":"unknown","epssScore":0,"epssCheckedAt":"2026-10-11T18:07:30.334Z","kevDateAdded":null,"advisoryAliases":["GHSA-65xq-cj8m-pqxc"],"affectedPackagesSource":null,"affectedPackagesCheckedAt":"2026-10-11T18:07:34.532Z","patchAvailable":null,"disclosureDate":"2026-10-11T13:17:20.680Z","capecIds":["CAPEC-122"],"crossRefCount":0,"attackSophistication":"moderate","impactType":["confidentiality","integrity"],"aiComponentTargeted":"agent","llmSpecific":true,"classifierConfidence":0.9,"researchCategory":null,"atlasIds":["AML.T0051"]}}