CVE-2026-45609
HIGH SEVERITYCVSS Score & Metrics
Base Score
7.2 / 10
Vulnerability Description
Spring AI MCP Security: Unvalidated URL Fetching (SSRF)
Vulnerability Details
Published Date
Last Modified
Source
GitHub
Vendor
maven
Product
org.springaicommunity:mcp-client-security
External References
- https://github.com/spring-ai-community/mcp-security/security/advisories/GHSA-qjp4-4jvr-xqg3
- https://github.com/spring-ai-community/mcp-security/pull/68
- https://github.com/spring-ai-community/mcp-security/commit/e6b67d8a67cd7acbee6e4c0741c385d62e3ed576
- https://github.com/spring-ai-community/mcp-security/releases/tag/v0.1.9
- https://github.com/advisories/GHSA-qjp4-4jvr-xqg3
Discussion (0)
Add Comment
No comments yet. Be the first!