Vulnerabilities
Last updated 19 minutes ago
| Package | Summary | Severity | Published | Modified |
|---|---|---|---|---|
|
|
ToolHive: containerized MCP servers can reach host services via host.docker.internal, enabling lateral movement | High Risk 8.8 | 10 days ago | 3 hours ago |
|
|
ToolHive: containerized MCP servers can reach host services via host.docker.internal, enabling lateral movement in github.com/stacklok/toolhive | Unknown | 4 hours ago | 4 hours ago |
|
|
ToolHive: SSRF guard misses IPv6 NAT64 ranges (64:ff9b::/96, 64:ff9b:1::/48), allowing metadata/internal access behind a NAT64 gateway | Low Risk 3.0 | 2 months ago | 2 months ago |
|
|
ToolHive: SSRF in remote MCP server authentication discovery (host-side, bypasses container isolation) | Medium Risk 4.7 | 2 months ago | 2 months ago |
|
|
ToolHive: SSRF guard misses IPv6 NAT64 ranges (64:ff9b::/96, 64:ff9b:1::/48), allowing metadata/internal access behind a NAT64 gateway in github.com/stacklok/toolhive | Unknown | 2 months ago | 2 months ago |
|
|
ToolHive: SSRF in remote MCP server authentication discovery (host-side, bypasses container isolation) in github.com/stacklok/toolhive | Unknown | 2 months ago | 2 months ago |
Page 1