A vulnerability was found in ArcadeData ArcadeDB up to 26.7.2. It has been declared as problematic. This issue affects the function get_server_settings of the component MCP. The manipulation results in information disclosure.

This vulnerability is identified as CVE-2026-67357. The attack can be executed remotely. There is not any exploit available.

It is recommended to upgrade the affected component.