github.com/googleapis/mcp-toolbox
Go6 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting github.com/googleapis/mcp-toolboxpage 1 of 1
- CVE-2026-11624CRITICALCVSS 9.4EG 9.4✓ Fixed in 0.25.02026-06-13
The Model Context Protocol has a security warning advising servers to validate the "Origin" header on all incoming connections to prevent DNS rebinding attacks. Prior to the v0.25.0 release, users had no way to validate the origin's host. …
- CVE-2026-11717CRITICALCVSS 9.1EG 9.1✓ Fixed in 1.4.02026-06-18
An authentication bypass vulnerability exists in the generic opaque token validation path (validateOpaqueToken) of googleapis/mcp-toolbox. When verifying an unparsed opaque token via an OAuth 2.0 introspection endpoint (RFC 7662), the too…
- CVE-2026-11718CRITICALCVSS 9.1EG 9.1✓ Fixed in 1.4.02026-06-18
An authentication bypass vulnerability exists in the generic opaque token validation path (validateOpaqueToken) of googleapis/mcp-toolbox. When the toolbox validates an opaque token via an OAuth 2.0 introspection endpoint (RFC 7662), it d…
- CVE-2026-11719HIGHCVSS 8.1EG 8.1✓ Fixed in 1.4.02026-06-18
An authenticated authorization bypass vulnerability exists in MCP Toolbox for Databases due to missing scope enforcement across older protocol handlers. While the 2025-11-25 protocol version handler correctly enforces per-tool restriction…
- CVE-2026-11720CRITICALCVSS 9.1EG 9.1✓ Fixed in 1.3.02026-06-29
A path traversal vulnerability exists in the HTTP tool URL builder of googleapis/mcp-toolbox. When constructing downstream API requests, the URL builder substitutes user-controlled pathParams into the configured tool path and parses the r…
- CVE-2026-9739CRITICALCVSS 9.4EG 9.4✓ Fixed in 1.2.02026-05-27
Vulnerable to DNS rebinding attacks when using SSE (http://b/499408790). During the beta phase, we implemented `allowed-origins` and `allowed-hosts` flags to align with MCP security guidelines. However, the hardcoded `Access-Control-Allow-…
Check whether github.com/googleapis/mcp-toolbox is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for github.com/googleapis/mcp-toolbox CVEs against the assets you own.
Start Free Scan →