CVE-2026-101065: Obot is an open-source AI agent/MCP platform. In all versions up to and including commit d7e6970, the Docker quickstart
Summary
Obot, an open-source AI agent platform, had a security flaw in its Docker quickstart instructions where the application started without authentication enabled, meaning anyone accessing port 8080 could gain full administrative control and potentially run malicious code on the host system. The vulnerability affected all versions up to commit d7e6970 because the default setup gave unauthenticated users the highest privilege levels (Owner and Admin roles) and mounted the host's Docker control socket into the container.
Solution / Mitigation
The fix is documentation-only: the quickstart now enables authentication by default. Operators who used the previous instructions should set the environment variable OBOT_SERVER_ENABLE_AUTHENTICATION=true before exposing the host to any untrusted network.
Vulnerability Details
9.8(critical)
EPSS: 0.0%
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
network
low
none
none
September 27, 2026
Classification
Affected Vendors
Related Issues
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-101065
First tracked: September 27, 2026 at 08:08 PM
Classified by LLM (prompt v3) · confidence: 95%