THREAT OPS › Threat News › [GHSA] GHSA-hvfh-5mj3-5f3j (high) — Chainlist has SSRF via MCP SSE and streamable-http transports that allows unauthenticated internal network access
[GHSA] GHSA-hvfh-5mj3-5f3j (high) — Chainlist has SSRF via MCP SSE and streamable-http transports that allows unauthenticated internal network access
GHSA-hvfh-5mj3-5f3j Severity: high CVE: CVE-2026-45019
Chainlist has SSRF via MCP SSE and streamable-http transports that allows unauthenticated internal network access
### Am I affected?
Only if your deployment sets `features.mcp.enabled = true` in `.chainlit/config.toml`. **MCP has been disabled by default since v2.7.0**, so most Chainlit deployments are not affected. No authentication is req
Indicators of compromise
- CVE-2026-45019cve
- CVE-2026-45018cve
- http://TARGET:8000/ws/socket.io/?EIO=4&transport=pollingurl
- http://TARGET:8000/ws/socket.io/?EIO=4&transport=polling&sid=$EIO_SIDurl
- http://TARGET:8000/mcpurl
- http://127.0.0.1:4445/internal-adminurl
- vipin@spl.teamemail
- security@spl.teamemail
Original source: https://github.com/advisories/GHSA-hvfh-5mj3-5f3j