CVE-2026-41679
Paperclip Vulnerable to Unauthenticated Remote Code Execution via Import Authorization Bypass
Description
Paperclip is a Node.js server and React UI that orchestrates a team of AI agents to run a business. Prior to version 2026.416.0, an unauthenticated attacker can achieve full remote code execution on any network-accessible Paperclip instance running in `authenticated` mode with default configuration. No user interaction, no credentials, just the target's address. The chain consists of six API calls. The attack is fully automated, requires no user interaction, and works against the default deployment configuration. Version 2026.416.0 patches the issue.
CVSS Vector Breakdown
AV:NAttack VectorAC:LAttack ComplexityPR:NPrivileges RequiredUI:NUser InteractionS:CScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
Attack Graph
Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/⌘ + scroll to zoom, or go fullscreen.
MITRE ATT&CK
2 techniquesReferences
- ⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoorsen·The Hacker News· Exploited Mythos 5 UNC6671
- Critical Paperclip Flaw Allowed Admin Access, Code Executionen-us·SecurityWeek· Advisory Paperclip auth-bypass
- Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Importsen·The Hacker News· PoC Paperclip AI ai-ml
- Weekly Metasploit Update: NTLM Relay Priv Esc, MCP Server Integration, Paperclip AI RCE Chain, and moreen·Rapid7 Blog· PoC Metasploit Framework rce
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2026-41679 and every CVE in our database. Create a free account — no credit card required.
Create Free Account