CVE Browser
ToolHive: containerized MCP servers can reach host services via host.docker.internal, enabling lateral movement
ToolHive: SSRF in remote MCP server authentication discovery (host-side, bypasses container isolation)
ToolHive: SSRF guard misses IPv6 NAT64 ranges (64:ff9b::/96, 64:ff9b:1::/48), allowing metadata/internal access behind a NAT64 gateway
ToolHive stores secrets in the state store with no encryption
Denial of service from maliciously configured Git repository in Minder
Denial of service of Minder Server from maliciously crafted GitHub attestations
Stacklok Minder vulnerable to denial of service from maliciously crafted templates
Denial of service of Minder Server with attacker-controlled REST endpoint
Minder's Github Webhook Handler vulnerable to denial of service from un-validated requests
Minder GetRepositoryByName data leak
`GetRepositoryByName`, `DeleteRepositoryByName` and `GetArtifactByName` allow access of arbitrary repositories in Minder by any authenticated user
Minder trusts client-provided mapping from repo name to upstream ID
Showing 1 to 12 CVEs · page 1