CVE-2026-31040
A vulnerability was identified in stata-mcp prior to v1.13.0 where insufficient validation of user-supplied Stata do-file content can lead to command execution.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://nvd.nist.gov/vuln/detail/CVE-2026-31040, https://github.com/SepineTam/stata-mcp/issues/20, https://github.com/SepineTam/stata-mcp/pull/21, https://github.com/SepineTam/stata-mcp/commit/52413ce, https://github.com/SepineTam/stata-mcp/releases/tag/v1.13.0, https://github.com/sepinetam/stata-mcp
