THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-13822 (MEDIUM 5.3) — MCPHub in versions below 0.11.0 is vulnerable to authentication bypass. Some endpoints are not protected by authentication middleware, allowing an unauthenticated attacker to perform actions in the name of other users and using their privileges.

[NVD] CVE-2025-13822 (MEDIUM 5.3) — MCPHub in versions below 0.11.0 is vulnerable to authentication bypass. Some endpoints are not protected by authentication middleware, allowing an unauthenticated attacker to perform actions in the name of other users and using their privileges.

lownvdPublished 2026-04-14

CVE-2025-13822 CVSS: 5.3 MEDIUM Published: 2026-04-14T11:16:24.300

MCPHub in versions below 0.11.0 is vulnerable to authentication bypass. Some endpoints are not protected by authentication middleware, allowing an unauthenticated attacker to perform actions in the name of other users and using their privileges.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-13822