Improper Link Resolution in Google MCP Toolbox for Databases
CVE-2026-102242
8.6HIGH
What is CVE-2026-102242?
The Google MCP Toolbox for Databases versions 1.2.0 through 1.9.0 contains a vulnerability due to improper link resolution in the path validation process for allowedLocalRoots. This allows an authenticated remote attacker with tool execution permissions to circumvent directory restrictions by exploiting symbolic links. By failing to resolve symbolic links prior to conducting path validation, the vulnerability permits unauthorized access or potential overwriting of sensitive local files that reside outside the defined root directories.
Affected Version(s)
MCP Toolbox for Databases 1.2.0 <= 1.9.0