CVE-2026-64684
OrtaTeknik Veri (Otomatik)
- CVSS Skoru
- 6.8
- EPSS
- —
- CWE
- CWE-200
- KEV Durumu
- Hayır
RMCP, Model Context Protocol için resmi bir Rust SDK'dir. 2.1.0 sürümünden önce, rmcp crate'inin StreamableHttpClientTransport sınıfı, crates/rmcp/src/transport/common/reqwest/streamable_http_client.rs dosyasında default_http_client'ını reqwest'in otomatik yönlendirme politikası ile oluşturur ve StreamableHttpClientTransportConfig.custom_headers'dan gelen çağırıcı tarafından sağlanan değerleri duyarlı olarak işaretlemeksizin uygular. Bir saldırgan veya tehlikeye açık MCP endpoint'u, cross-origin 307 veya 308 yönlendirmesi döndüğünde, reqwest yönlendirmeyi takip eder ve apply_custom_headers, özel API anahtarlarının veya kimlik doğrulama tokenlerinin yeni origen gönderilmesine neden olur, burada bir saldırgan bunları yakalayabilir ve yeniden kullanabilir. Auth_header yolu ayrı olarak etkilenmez, çünkü standard Authorization başlığını kullanır, reqwest bu başlığı cross-origin yönlendirmelerde kaldırır. Bu sorun 2.1.0 sürümünde giderilmiştir.
Orijinal açıklama (İngilizce)
RMCP is an official Rust SDK for the Model Context Protocol. Prior to 2.1.0, the rmcp crate's StreamableHttpClientTransport in crates/rmcp/src/transport/common/reqwest/streamable_http_client.rs builds its default_http_client with reqwest's automatic redirect policy and applies caller-supplied values from StreamableHttpClientTransportConfig.custom_headers without marking them as sensitive. When a malicious or compromised MCP endpoint returns a cross-origin 307 or 308 redirect, reqwest follows the redirect and apply_custom_headers causes custom API keys or authentication tokens to be replayed to the new origin, where an attacker can capture and reuse them. The separate auth_header path is not affected because it uses the standard Authorization header, which reqwest strips on cross-origin redirects. This issue is fixed in version 2.1.0.
Referanslar
- https://github.com/modelcontextprotocol/rust-sdk/commit/496902b9cf2c8a947454718da31829ae776b969b
- https://github.com/modelcontextprotocol/rust-sdk/pull/936
- https://github.com/modelcontextprotocol/rust-sdk/releases/tag/rmcp-v2.1.0
- https://github.com/modelcontextprotocol/rust-sdk/security/advisories/GHSA-9g45-5xwm-f3wc
Bu CVE için henüz editoryal inceleme yapılmadı. Sadece otomatik teknik veri gösteriliyor.
