{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3aexcel-mcp-serverexcel-mcp-server0.1.8/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:excel-mcp-server:excel-mcp-server:0.1.8:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":9.8,"id":"CVE-2026-85661"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["excel-mcp-server (0.1.8)"],"_cs_severities":["critical"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":[],"content_html":"\u003cp\u003eThe excel-mcp-server package, specifically version 0.1.8, contains a critical path traversal vulnerability (CVE-2026-85661) arising from improper validation of file paths when the \u003ccode\u003eEXCEL_FILES_PATH\u003c/code\u003e environment variable is not explicitly configured in stdio mode. Because the application fails to enforce directory confinement under these conditions, it inadvertently allows any input provided to its file-related tools to resolve to arbitrary locations on the underlying host filesystem. An attacker capable of interacting with the server's MCP tools can exploit this to read sensitive configuration files, modify application data, or potentially write malicious payloads to system directories, effectively inheriting the permissions of the service process.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows for full file system access within the context of the service user. This poses a significant risk of data exfiltration and persistent system compromise, particularly in environments where the service is running with elevated or overly permissive account privileges.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImmediately upgrade to a patched version of excel-mcp-server when available.\u003c/li\u003e\n\u003cli\u003eExplicitly define the \u003ccode\u003eEXCEL_FILES_PATH\u003c/code\u003e environment variable in all deployments to restrict the service to a designated, hardened directory.\u003c/li\u003e\n\u003cli\u003eAudit filesystem logs for unexpected file access patterns originating from the process executing the excel-mcp-server instance.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-04T17:26:23Z","date_published":"2026-09-04T17:26:23Z","id":"https://feed.craftedsignal.io/briefs/2026-09-excel-mcp-server-traversal/","summary":"The excel-mcp-server package version 0.1.8 fails to enforce path confinement in stdio mode when EXCEL_FILES_PATH is unset, allowing attackers to perform arbitrary file reads and writes on the host system.","title":"Path Traversal Vulnerability in excel-mcp-server (CVE-2026-85661)","url":"https://feed.craftedsignal.io/briefs/2026-09-excel-mcp-server-traversal/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:excel-Mcp-Server:excel-Mcp-Server:0.1.8:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}