THREAT OPS › Threat News › [GHSA] GHSA-65h7-9wrw-629c (high) — FrontMCP and mcp-from-openapi have bypass of OpenAPI external $ref SSRF fix
[GHSA] GHSA-65h7-9wrw-629c (high) — FrontMCP and mcp-from-openapi have bypass of OpenAPI external $ref SSRF fix
GHSA-65h7-9wrw-629c Severity: high CVE: CVE-2026-59973
FrontMCP and mcp-from-openapi have bypass of OpenAPI external $ref SSRF fix
## Summary
The published fix for GHSA-v6ph-xcq9-qxxj / CVE-2026-39885 added a direct hostname denylist for OpenAPI external `$ref` dereferencing, but the latest patched dependency `mcp-from-openapi` 2.3.0 still makes backend-origin requests to loopback when the targ
Indicators of compromise
- db323976c66297d684a3e63bbfe1db6b310f2944sha1
- c15b79abe8c6a3cb71d4b7a3bafb8190730dc756sha1
- CVE-2026-59973cve
- CVE-2026-39885cve
- http://127.0.0.1`url
- http://127.0.0.1.nip.io:url
- http://127.0.0.1:url
- http://127.0.0.1:45117/schema.jsonurl
- http://127.0.0.1.nip.io:45117/schema.jsonurl
- http://127.0.0.1.nip.io:45117/redirecturl
Original source: https://github.com/advisories/GHSA-65h7-9wrw-629c