CyberRota Analysis
AI-GeneratedIBM ContextForge MCP Gateway versions up to 1.0.6 are vulnerable to a DNS rebinding attack, which could enable remote authenticated attackers to access sensitive information during tool invocation. Organizations using this gateway should prioritize patching to mitigate the risk of data exposure. Immediate action is recommended for those handling sensitive data or operating in regulated environments.
Original NVD Description
IBM ContextForge MCP Gateway (`mcp-contextforge-gateway`) <= v1.0.6 MCP Context Forge could allow a remote authenticated attacker to obtain sensitive information due to a DNS rebinding vulnerability during tool invocation.
Related CVEs
Other vulnerabilities affecting the same vendor(s)