Critical Paperclip Flaw Enables Full Server Takeover in Six API Calls
A critical vulnerability, CVE-2026-41679, has been disclosed in Paperclip, an AI agent orchestration platform, affecting all versions prior to 2026.416.0. An unauthenticated attacker with HTTP access to an internet-exposed instance can register an account, self-approve a CLI key, and exploit an unguarded import route to bypass admin-only company creation checks. By embedding a malicious process adapter in a configuration bundle, the attacker can then trigger arbitrary command execution as the server's OS user via Node.js. A secondary local-development attack vector uses DNS rebinding to relay commands through a victim's browser to a loopback Paperclip instance. A patch is available in version 2026.416.0, and administrators are advised to disable open sign-up, restrict API access to private networks, and sandbox process adapters immediately.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.

Discussion (0)
Log in to join the discussion and vote.
Log in