ContextForge MCP Gateway (`mcp-contextforge-gateway`) vulnerability

IBM ContextForge MCP Gateway (`mcp-contextforge-gateway`) <= v1.0.6 MCP Context Forge could allow a remote authenticated attacker to obtain sensitive information due to a DNS rebinding vulnerability during tool invocation.

Published 4 Sep 2026Updated 15 Sep 20261 sources
CVSS 7.7

Source timeline

CVE record published by NVDView source ↗