MCP Gateway 允许轻松且安全地运行和部署 MCP 服务器。在 0.21.0 至 0.42.2 版本中,Docker MCP Gateway 在 和 中,将攻击者可控的 OCI 镜像标签通过 YAML 反序列化(unmarshal)为通用的 结构体,适用于直接的 引用和目录快照导入场景。随后,诸如 、 和 等运行时塑造字段被直接追加到 的参数向量中,而未实施来源白名单(origin allowlist)校验。这使得恶意镜像作者能够在受害者选择或拉取该镜像时,请求挂载主机文件系统或 Docker 套接字(so
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| docker | mcp-gateway | >= 0.21.0, < 0.42.2 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| docker | mcp-gateway | >= 0.21.0, < 0.42.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet