CVE-2026-108721
MEDIUM
5,8
Source: [email protected]
Attack Vector: local
Attack Complexity: low
Privileges Required: none
User Interaction: passive
Confidentiality: N/A
Integrity: N/A
Availability: N/A
MEDIUM
5,3
Source: [email protected]
Attack Vector: local
Attack Complexity: high
Privileges Required: none
User Interaction: required
Scope: unchanged
Confidentiality: high
Integrity: low
Availability: none
Description
AI Translation Available
Open Computer Use through 1.0.0 on macOS contains an improper case sensitivity handling vulnerability that allows local MCP callers to bypass the password-manager denylist using case-variant bundle identifiers. Attackers, including prompt-injected model turns, can pass identifiers like com.1Password.1Password to get_app_state and action tools to read accessibility trees, capture screenshots, and drive unlocked password manager interfaces.
178
Improper Handling of Case Sensitivity
IncompleteCommon Consequences
Security Scopes Affected:
Access Control
Potential Impacts:
Bypass Protection Mechanism
Applicable Platforms
Operating Systems:
Windows, macOS
https://github.com/iFurySt/open-codex-computer-use
https://github.com/iFurySt/open-codex-computer-use/blob/8a3a7dec06402db2d760368…
https://github.com/iFurySt/open-codex-computer-use/blob/8a3a7dec06402db2d760368…
https://hackmd.io/@haind/rJHI_S6IiMl
https://www.vulncheck.com/advisories/open-computer-use-through-1.0.0-denylist-b…