THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-2xhg-73j7-rrgx (high) — Contentful MCP Server: export_space/import_space tools pass LLM-controlled `host`/`proxy` args to CMA client, redirecting server PAT to attacker-controlled endpoint

[GHSA] GHSA-2xhg-73j7-rrgx (high) — Contentful MCP Server: export_space/import_space tools pass LLM-controlled `host`/`proxy` args to CMA client, redirecting server PAT to attacker-controlled endpoint

highgithub_advisoriesPublished 2026-08-19

GHSA-2xhg-73j7-rrgx Severity: high CVE: CVE-2026-53957

Contentful MCP Server: export_space/import_space tools pass LLM-controlled `host`/`proxy` args to CMA client, redirecting server PAT to attacker-controlled endpoint

### Summary

`export_space` and `import_space` tools in `@contentful/mcp-tools` accept LLM-controlled `host` and `proxy` parameters that are spread directly into the options obje

Indicators of compromise

Original source: https://github.com/advisories/GHSA-2xhg-73j7-rrgx