What is CVE-2026-44192?
CVE-2026-44192 is a path traversal vulnerability found in the Ansible Lightspeed MCP server. This flaw allows an attacker to manipulate an AI agent through indirect prompt injection, resulting in the server writing files to unauthorized locations. Users should apply emergency patches immediately.
Azərbaycanca: CVE-2026-44192, Ansible Lightspeed MCP server-da aşkarlanan path traversal boşluğudur. Bu qüsur, dolayı prompt injection vasitəsilə bir AI agenti manipulyasiya edərək serverin icazəsiz yerlərə fayl yazmasına imkan verir. İstifadəçilərə təcili yamaqları tətbiq etmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-22
FAQ2
In which product was CVE-2026-44192 discovered?
CVE-2026-44192 was discovered in the Ansible Lightspeed MCP server.
What attack method is exploited to leverage CVE-2026-44192?
CVE-2026-44192 is exploited through indirect prompt injection to manipulate an AI agent, enabling a path traversal attack.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.