Vulnerability  ·  2026-08-15

mcp-rdf-explorer and mcp-dominican-layer — SSRF in MCP tool URL-fetching functions (3 niche CVEs)

VulnerabilityMedium impactGlobalCVE-2026-19753
NVD published CVE-2026-19753 (CVSS 7.3), CVE-2026-19751, and CVE-2026-19752 (both CVSS 6.3) on 2026-08-13, describing SSRF vulnerabilities in URL-fetching tool functions of two niche, single-maintainer MCP server projects.
Low blast radius given narrow adoption of these specific unmaintained repos, but representative of a widespread pattern where MCP tool implementations pass agent-supplied URLs to network calls without SSRF guards.
explore_url function in mcp-rdf-explorer and axios.get in mcp-dominican-layer's parse-csv/parse-pdf tools pass user-supplied URL arguments directly to outbound HTTP requests without SSRF validation, allowing an MCP tool caller (typically the LLM agent) to reach internal network resources
mcp-rdf-explorer 1.0.0; mcp-dominican-layer (up to commit 39dd373)
No vendor patch confirmed; restrict outbound network access for these MCP servers or avoid deployment until fixed
mcp-rdf-explorer issuemcp-dominican-layer repo
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →