THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-65h7-9wrw-629c (high) — FrontMCP and mcp-from-openapi have bypass of OpenAPI external $ref SSRF fix

[GHSA] GHSA-65h7-9wrw-629c (high) — FrontMCP and mcp-from-openapi have bypass of OpenAPI external $ref SSRF fix

highgithub_advisoriesPublished 2026-09-11

GHSA-65h7-9wrw-629c Severity: high CVE: CVE-2026-59973

FrontMCP and mcp-from-openapi have bypass of OpenAPI external $ref SSRF fix

## Summary

The published fix for GHSA-v6ph-xcq9-qxxj / CVE-2026-39885 added a direct hostname denylist for OpenAPI external `$ref` dereferencing, but the latest patched dependency `mcp-from-openapi` 2.3.0 still makes backend-origin requests to loopback when the targ

Indicators of compromise

Original source: https://github.com/advisories/GHSA-65h7-9wrw-629c