THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-hvfh-5mj3-5f3j (high) — Chainlist has SSRF via MCP SSE and streamable-http transports that allows unauthenticated internal network access

[GHSA] GHSA-hvfh-5mj3-5f3j (high) — Chainlist has SSRF via MCP SSE and streamable-http transports that allows unauthenticated internal network access

highgithub_advisoriesPublished 2026-08-25

GHSA-hvfh-5mj3-5f3j Severity: high CVE: CVE-2026-45019

Chainlist has SSRF via MCP SSE and streamable-http transports that allows unauthenticated internal network access

### Am I affected?

Only if your deployment sets `features.mcp.enabled = true` in `.chainlit/config.toml`. **MCP has been disabled by default since v2.7.0**, so most Chainlit deployments are not affected. No authentication is req

Indicators of compromise

Original source: https://github.com/advisories/GHSA-hvfh-5mj3-5f3j