GHSA-2xhg-73j7-rrgx
HIGHCVE-2026-53957exportspace and importspace tools in @contentful/mcp-tools accept LLM-controlled host and proxy parameters that are spread directly into the options object passed to contentful-export / contentful-import. These libraries pass the merged options — including the attacker-controlled host — to the Contentful Management API (CMA) SDK, which builds baseURL from host and attaches the server's CMA Persona
- Affected
- < 1.7.19, >=0, <0.4.5
- Fixed in
- 1.7.19
- Weakness
- CWE-918
- Published
- 2026-08-19
- Source
- github