A vulnerability, which was classified as critical, was found in adenot mcp-google-search up to 0.3.1. Impacted is an unknown function of the file src/index.ts of the component read_webpage. Executing a manipulation of the argument url can lead to server-side request forgery.

This vulnerability is tracked as CVE-2026-19337. The attack is restricted to local execution. Moreover, an exploit is present.

It is advisable to implement a patch to correct this issue.