在启动 MCP HTTP 传输层时,未启用底层 SDK 提供的“主机白名单”机制。具体而言, 调用了共享的 辅助函数,但从未设置用于防护 DNS 重绑定攻击的选项。这导致该传输层接受了任意 头指定的请求,使得本地可访问的 GitHub MCP 端点可以被访客浏览器中某个指向绑定地址的页面所驱动(即存在 DNS 重绑定风险)。修复方案是显式传递该选项,并同步更新了依赖项;仅更新依赖项本身并不能完全消除该漏洞。由于该仓库尚未发布包含此修复的版本,因此受影响的范围界定为该修复提交之前的最后一个提交。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| timescale | tiger-gh-mcp-server | e559b57b57cf61277525ec96bbf1edcf01b16a21 |
unaffected |
< e559b57b57cf61277525ec96bbf1edcf01b16a21 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| timescale | tiger-gh-mcp-server | 0 ~ e559b57b57cf61277525ec96bbf1edcf01b16a21 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-81095 | 6.8 MEDIUM | Timescale pg-aiguide through 0.5.0 DNS Rebinding via Disabled Host Header Allow-List |
| CVE-2026-81099 | 6.8 MEDIUM | Timescale tiger-slack DNS Rebinding via Disabled Host Header Allow-List |
No comments yet