# CVE-2026-22688

## Summary

- **CVE ID:** CVE-2026-22688
- **Severity:** CRITICAL
- **CVSS Score:** 10 (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H)
- **CWE:** CWE-77
- **Published:** Jan 10, 2026
- **Last Modified:** Mar 12, 2026

## Description

WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0.2.5, there is a command injection vulnerability that allows authenticated users to inject stdio_config.command/args into MCP stdio settings, causing the server to execute subprocesses using these injected values. This issue has been patched in version 0.2.5.

## Affected Products

- Tencent — WeKnora (< 0.2.5)

## References

- [CNA](https://github.com/Tencent/WeKnora/security/advisories/GHSA-78h3-63c4-5fqc)
- [CNA](https://github.com/Tencent/WeKnora/commit/f7900a5e9a18c99d25cec9589ead9e4e59ce04bb)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 1.96%
- **EPSS Percentile:** 79.1

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._