GO-2026-4292: WeKnora has Command Injection in MCP stdio test in github.com/Tencent/WeKnora
GO-2026-4293: WeKnora vulnerable to SQL Injection in github.com/Tencent/WeKnora
GO-2026-4628: WeKnora is Vulnerable to SSRF via Redirection in github.com/Tencent/WeKnora
GO-2026-4637: WeKnora has Broken Access Control - Cross-Tenant Data Exposure in github.com/Tencent/WeKnora
GO-2026-4638: WeKnora Vulnerable to Tool Execution Hijacking via Ambigous Naming Convention In MCP client and Indirect Prompt Injection in github.com/Tencent/WeKnora
GO-2026-4640: WeKnora has Unauthorized Cross‑Tenant Knowledge Base Cloning in github.com/Tencent/WeKnora
GO-2026-4641: WeKnora Vulnerable to Remote Code Execution via SQL Injection Bypass in AI Database Query Tool in github.com/Tencent/WeKnora
GO-2026-4642: WeKnora Vulnerable to Broken Access Control in Tenant Management in github.com/Tencent/WeKnora
GO-2026-4643: WeKnora has DNS Rebinding Vulnerability in web_fetch Tool that Allows SSRF to Internal Resources in github.com/Tencent/WeKnora