Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-34742

Опубликовано: 02 апр. 2026
Источник: redhat
CVSS3: 8
EPSS Низкий

Описание

The Go MCP SDK used Go's standard encoding/json. Prior to version 1.4.0, the Model Context Protocol (MCP) Go SDK does not enable DNS rebinding protection by default for HTTP-based servers. When an HTTP-based MCP server is run on localhost without authentication with StreamableHTTPHandler or SSEHandler, a malicious website could exploit DNS rebinding to bypass same-origin policy restrictions and send requests to the local MCP server. This could allow an attacker to invoke tools or access resources exposed by the MCP server on behalf of the user in those limited circumstances. This issue has been patched in version 1.4.0.

A flaw was found in the Model Context Protocol (MCP) Go SDK. When an HTTP-based MCP server is run on localhost without authentication, a malicious website can exploit a DNS rebinding vulnerability. This allows the attacker to bypass same-origin policy restrictions and send requests to the local MCP server. Consequently, an attacker could invoke tools or access resources exposed by the MCP server on behalf of the user.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Migration Toolkit for Virtualizationmigration-toolkit-virtualization/mtv-cli-download-rhel9Will not fix
Migration Toolkit for Virtualizationmtv-candidate/mtv-api-rhel9Will not fix
Migration Toolkit for Virtualizationmtv-candidate/mtv-cli-download-rhel9Will not fix
Migration Toolkit for Virtualizationmtv-candidate/mtv-controller-rhel9Will not fix
Migration Toolkit for Virtualizationmtv-candidate/mtv-operator-bundleWill not fix
OpenShift Lightspeedopenshift-lightspeed/openshift-mcp-server-rhel9Not affected
OpenShift Serverlessopenshift-serverless-1/kn-client-kn-rhel9Affected
OpenShift Serverlessopenshift-serverless-1/kn-plugin-func-func-util-rhel9Affected
Red Hat OpenShift AI (RHOAI)rhoai/odh-mod-arch-gen-ai-rhel9Not affected
Red Hat OpenShift Dev Spaces 3.28devspaces/udi-rhel9FixedRHSA-2026:2177228.05.2026

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-1188
https://bugzilla.redhat.com/show_bug.cgi?id=2454608github.com/modelcontextprotocol/go-sdk: Model Context Protocol (MCP) Go SDK: DNS rebinding vulnerability allows unauthorized access

EPSS

Процентиль: 33%
0.0042
Низкий

8 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
nvd
4 месяца назад

The Go MCP SDK used Go's standard encoding/json. Prior to version 1.4.0, the Model Context Protocol (MCP) Go SDK does not enable DNS rebinding protection by default for HTTP-based servers. When an HTTP-based MCP server is run on localhost without authentication with StreamableHTTPHandler or SSEHandler, a malicious website could exploit DNS rebinding to bypass same-origin policy restrictions and send requests to the local MCP server. This could allow an attacker to invoke tools or access resources exposed by the MCP server on behalf of the user in those limited circumstances. This issue has been patched in version 1.4.0.

CVSS3: 8.1
github
4 месяца назад

DNS Rebinding Protection Disabled by Default in Model Context Protocol Go SDK for Servers Running on Localhost

EPSS

Процентиль: 33%
0.0042
Низкий

8 High

CVSS3