utcp-gql 1.1.1 之前版本以及 utcp-websocket 1.1.1 之前版本存在服务器端请求伪造(SSRF)漏洞,这是因为对 CVE-2026-44661 修复措施的应用不完整。其中,GraphQL 插件使用了一种存在缺陷的前缀检查机制,允许攻击者绕过 URL 限制,例如构造类似 http://127.0.0.1.attacker.example 的 URL;而 WebSocket 插件则完全未对 URL 进行任何验证,尽管其文档中明确提出了安全要求。攻击者可以通过在调用模板中提供恶意的工具 UR
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| universal-tool-calling-protocol | python-utcp | 0 ~ 1.1.1 | - |
|
| universal-tool-calling-protocol | python-utcp | 0 ~ 1.1.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-101060 | 8.2 HIGH | python-utcp before 1.1.4 SSRF via unvalidated HTTP redirects |
| CVE-2026-101059 | 7.1 HIGH | utcp-http before 1.1.4 OAuth2 tokenUrl Trust Boundary Bypass |
| CVE-2026-101058 | 6.9 MEDIUM | python-utcp before 1.1.12 SSRF via Remote HTTP Manual |
| CVE-2026-101057 | 3.1 LOW | utcp-mcp before 1.1.3 SSRF via unvalidated MCP server URL |
No comments yet