Impact
A server‑side request forgery flaw in the MCP registration flow allows an attacker with Power User or higher privileges to specify any target URL. The system then performs the request and returns error messages that can leak internal credentials or sensitive configuration data, enabling disclosure of secrets or internal services. The weakness is a direct pathway to compromise confidentiality of the underlying network and data.
Affected Systems
The vulnerability affects the obot-platform : obot software before version 0.23.0. No additional products or downstream dependencies are listed.
Risk and Exploitability
The CVSS score of 8.3 places the flaw in the high‑severity range, indicating significant risk when exploited. EPSS data is not available, so the precise probability of exploitation cannot be quantified, but the fact that no KEV listing exists suggests the vulnerability has not yet been publicly exploited at scale. The likely attack vector involves privileged users leveraging the logical interface of MCP registration to trigger arbitrary outbound requests; thus, users with elevated roles are an immediate target as malicious actors can reach internal services or cloud metadata endpoints and obtain credentials in the response.
OpenCVE Enrichment