Vulnerability  ·  2026-04-12

MCP Library SSRF via JSON Schema Mishandling (CVE-2026-39885)

VulnerabilityMedium impactCVE-2026-39885
Improper JSON schema reference handling in mcp-from-openapi library enables Server-Side Request Forgery (SSRF) and local file read. CVSS 7.5. Attackers can access internal services and read local files through crafted schema references.
Crafted JSON schema references exploit insufficient validation in the MCP-to-OpenAPI translation layer, enabling SSRF to internal services and local file read.
Applications using mcp-from-openapi library to bridge OpenAPI specifications with MCP protocol endpoints.
Update mcp-from-openapi library. Implement strict JSON schema reference validation and restrict outbound network access from MCP server processes.
Sources
TheHackerWire - CVE-2026-39885
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →