GHSA-qjp4-4jvr-xqg3
HIGHCVE-2026-45609The mcp-security framework fails to implement the mandatory SSRF mitigations outlined in the Model Context Protocol (MCP) [security specifications](https://modelcontextprotocol.io/docs/tutorials/security/securitybestpractices#mitigation-3). Specifically, it processes untrusted URLs for OAuth-related discovery and metadata without verifying if the targets are malicious or internal to the network.
- Affected
- < 0.1.9
- Fixed in
- 0.1.9
- Weakness
- CWE-918
- Published
- 2026-05-18
- Source
- github