CVE-2026-50287: Agenticmail
High severity, CVSS 8.7. EPSS: 0.5% chance of exploitation in the next 30 days.
AgenticMail gives AI agents real email addresses and phone numbers. Prior to version 0.9.27, @agenticmail/mcp exposes a Streamable HTTP transport when started with --http or MCP_HTTP=1. In that mode, the /mcp endpoint accepts requests without any HTTP authentication layer. A remote client can initialize a session and call tools directly. This issue has been patched in version 0.9.27.
Affected products
- Agenticmail Agenticmail: before 0.9.27 (fixed in 0.9.27)
Published 2026-06-12. Last modified 2026-06-17.