Executive brief
MCPHub is a tool used to manage and organize multiple Model Context Protocol (MCP) servers and APIs. A security flaw in versions before 0.11.0 allows unauthorized individuals to bypass security checks on certain parts of the system. This could allow an attacker to perform actions as if they were a legitimate user, potentially leading to unauthorized data access or configuration changes.
Technical details
MCPHub versions prior to 0.11.0 contain an authentication bypass vulnerability classified as CWE-639 (Authorization Bypass Through User-Controlled Key). The root cause is that specific API endpoints were not integrated with the application's authentication middleware. An unauthenticated attacker can reach these endpoints over the network (specifically adjacent networks according to CVSS 4.0 metrics) and execute actions with the privileges of other users. This allows for unauthorized interaction with managed MCP servers and APIs. The issue is resolved in version 0.11.0.
Affected products
- samanhappy mcphub < 0.11.0
Timeline
- 2026-04-14: advisory: Initial disclosure by CERT.PL and GitHub Advisory Database
- 2026-04-14: disclosed
- 2026-04-15: other: Advisory updated and reviewed