ContextForge MCP Gateway (`mcp-contextforge-gateway`) vulnerability

IBM ContextForge MCP Gateway (`mcp-contextforge-gateway`) <= v1.0.6 MCP Context Forge could allow a remote authenticated attacker to obtain sensitive information due to a DNS rebinding vulnerability during tool invocation.

Published 4 Sep 2026Updated 15 Sep 20261 sources
CVSS 7.7

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.