Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-101059— utcp-http before 1.1.4 OAuth2 tokenUrl Trust Boundary Bypass

Quick assessment

Affected
universal-tool-calling-protocol python-utcp
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

在 utcp-http 1.1.4 版本之前,该库未对来自远程 OpenAPI 规范的 OAuth2 tokenUrl 字段进行验证,这会导致攻击者将凭据提交重定向到任意端点。当受害者注册一个由攻击者控制的 OpenAPI 规范并调用一个生成的 OAuth2 保护工具时,该库会将受害者的 client_id 和 client_secret 以 POST 方式发送到攻击者指定的 token 端点,而不对 URL 进行任何验证。

CVSS 7.1 · High
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-101059

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
utcp-http before 1.1.4 OAuth2 tokenUrl Trust Boundary Bypass
Source: CVE Program / CVE List V5
Vulnerability Description
utcp-http before 1.1.4 fails to validate the OAuth2 tokenUrl field from remote OpenAPI specifications, allowing attackers to redirect credential submission to arbitrary endpoints. When a victim registers an attacker-controlled OpenAPI spec and invokes a generated OAuth2-protected tool, the library POSTs the victim's client_id and client_secret to the attacker-supplied token endpoint without URL validation.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:N
Source: CVE Program / CVE List V5
Vulnerability Type
服务端请求伪造(SSRF)
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
universal-tool-calling-protocol python-utcp 0 ~ 1.1.4 -

II. Public POCs for CVE-2026-101059

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-101059

请登录查看更多情报信息。

Vendor Advisories for CVE-2026-101059 (1)

Other References for CVE-2026-101059 (1)

Same Patch Batch · universal-tool-calling-protocol · 2026-09-27 · 5 CVEs total

CVE-2026-101060 8.2 HIGH python-utcp before 1.1.4 SSRF via unvalidated HTTP redirects
CVE-2026-101058 6.9 MEDIUM python-utcp before 1.1.12 SSRF via Remote HTTP Manual
CVE-2026-101061 4.7 MEDIUM utcp-gql and utcp-websocket before 1.1.1 SSRF via URL validation bypass
CVE-2026-101057 3.1 LOW utcp-mcp before 1.1.3 SSRF via unvalidated MCP server URL

IV. Related Vulnerabilities

V. Comments for CVE-2026-101059

No comments yet


Leave a comment