THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-cmwv-wf9p-p8wx (high) — genieacs-mcp: DNS rebinding reaches local GenieACS MCP Streamable HTTP transport

[GHSA] GHSA-cmwv-wf9p-p8wx (high) — genieacs-mcp: DNS rebinding reaches local GenieACS MCP Streamable HTTP transport

highgithub_advisoriesPublished 2026-08-25

GHSA-cmwv-wf9p-p8wx Severity: high CVE: CVE-2026-55637

genieacs-mcp: DNS rebinding reaches local GenieACS MCP Streamable HTTP transport

`genieacs-mcp` exposes a local Streamable HTTP MCP endpoint that accepts attacker-controlled `Host` and `Origin` headers. A malicious web page can use DNS rebinding to route browser requests to a victim's loopback MCP listener while preserving the attacker origi

Indicators of compromise

Original source: https://github.com/advisories/GHSA-cmwv-wf9p-p8wx