THREAT OPS › Threat News › [GHSA] GHSA-2xhg-73j7-rrgx (high) — Contentful MCP Server: export_space/import_space tools pass LLM-controlled `host`/`proxy` args to CMA client, redirecting server PAT to attacker-controlled endpoint
[GHSA] GHSA-2xhg-73j7-rrgx (high) — Contentful MCP Server: export_space/import_space tools pass LLM-controlled `host`/`proxy` args to CMA client, redirecting server PAT to attacker-controlled endpoint
GHSA-2xhg-73j7-rrgx Severity: high CVE: CVE-2026-53957
Contentful MCP Server: export_space/import_space tools pass LLM-controlled `host`/`proxy` args to CMA client, redirecting server PAT to attacker-controlled endpoint
### Summary
`export_space` and `import_space` tools in `@contentful/mcp-tools` accept LLM-controlled `host` and `proxy` parameters that are spread directly into the options obje
Indicators of compromise
- CVE-2026-53957cve
- http://127.0.0.1:url
- http://api.contentful.com/spaces/spc_victim_abc123url
- attacker.comdomain
Original source: https://github.com/advisories/GHSA-2xhg-73j7-rrgx