CVE-2026-108582: GenOffice through 0.11.505 Insecure Permissions in HTTP MCP Server File Store
GenOffice through 0.11.505 contains an incorrect permissions vulnerability in its HTTP MCP server file store that allows local unprivileged users to read uploaded and generated documents. Attackers can list the world-readable genoffice-mcp-http directory under the system temporary directory to read client uploads and converted outputs, bypassing the HTTP bearer token.
Affected Software
Event History
Frequently Asked Questions
Who is exposed to this issue?
Systems running an affected GenOffice version with the HTTP MCP server file store in use are exposed to local unprivileged users on the same host. Those users can access uploaded client documents and generated conversion outputs.
What does an attacker need to exploit it?
An attacker needs local unprivileged access to the host. No HTTP bearer token is required, because the files can be read directly from the world-readable genoffice-mcp-http directory under the system temporary directory.
How can I check whether documents may already be exposed?
Inspect the system temporary directory for a genoffice-mcp-http directory and determine whether it is world-readable. Files in that directory may include client uploads and converted outputs accessible to other local users.