๐Ÿ” CVE Alert

CVE-2026-81848

LOW 3.5

cyberchitta scrapling-fetch-mcp _fetcher.py s_fetch_pattern server-side request forgery

CVSS Score
3.5
EPSS Score
0.0%
EPSS Percentile
0th

A vulnerability was determined in cyberchitta scrapling-fetch-mcp up to 0.2.2. The impacted element is the function s_fetch_page/s_fetch_pattern of the file src/scrapling_fetch_mcp/_fetcher.py. Executing a manipulation can lead to server-side request forgery. The attack can be launched remotely. Upgrading to version 0.2.3 is sufficient to resolve this issue. This patch is called 9f6f34e92c55c3d95566ad9c62aca7327d24533a. Upgrading the affected component is advised.

CWE CWE-918
Vendor cyberchitta
Product scrapling-fetch-mcp
Published Aug 27, 2026
Stay Ahead of the Next One

Get instant alerts for cyberchitta scrapling-fetch-mcp

Be the first to know when new low vulnerabilities affecting cyberchitta scrapling-fetch-mcp are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N/E:X/RL:O/RC:C
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

cyberchitta / scrapling-fetch-mcp
0.2.0 0.2.1 0.2.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
vuldb.com: https://vuldb.com/vuln/396173 vuldb.com: https://vuldb.com/vuln/396173/cti vuldb.com: https://vuldb.com/cve/CVE-2026-81848 vuldb.com: https://vuldb.com/submit/887256 github.com: https://github.com/cyberchitta/scrapling-fetch-mcp/issues/6 github.com: https://github.com/cyberchitta/scrapling-fetch-mcp/commit/9f6f34e92c55c3d95566ad9c62aca7327d24533a github.com: https://github.com/cyberchitta/scrapling-fetch-mcp/

Credits

๐Ÿ” Mcfly_Zhang (VulDB User)