VulnWatch VulnWatch
← Back to dashboard
High github · GHSA-c4hg-6933-x62x

Apache SkyWalking MCP: Server-Side Request Forgery via SW-URL Header in MCP Server

Published Apr 13, 2026 CVSS 7.1

Server-Side Request Forgery via SW-URL Header vulnerability in Apache SkyWalking MCP.

This issue affects Apache SkyWalking MCP: 0.1.0.

Users are recommended to upgrade to version 0.2.0, which fixes this issue.

Affected AI Products

mcp server
Get the weekly digest. Every Monday: top AI security stories of the week. Free.