THREAT OPS › Threat News › [GHSA] GHSA-9qhg-99ww-9mqc (high) — utcp-http SSRF: HTTP tool invocation follows redirects without re-validating the target
[GHSA] GHSA-9qhg-99ww-9mqc (high) — utcp-http SSRF: HTTP tool invocation follows redirects without re-validating the target
GHSA-9qhg-99ww-9mqc Severity: high CVE: None
utcp-http SSRF: HTTP tool invocation follows redirects without re-validating the target
## Summary
`HttpCommunicationProtocol.call_tool` validates only the pre-redirect tool URL, then issues the request with redirects enabled and never re-checks where it lands. A tool whose endpoint is an attacker-controlled public URL can therefore `302`-redirect th
MITRE ATT&CK techniques
- CredentialsT1589.001
Indicators of compromise
- 4ed0a48b84a452338bd3e996efb0d169e8d75ac2sha1
- https://`url
- http://{internal}:{ms._server.socketsurl
- http://127.0.0.1:{as_._server.socketsurl
- https://`-to-internalurl
- 8.8.8.8ipv4
Original source: https://github.com/advisories/GHSA-9qhg-99ww-9mqc