Impact
AstrBotDevs AstrBot up to version 4.25.2 contains a server‑side request forgery vulnerability in the function ToolsRoute.test_mcp_connection located in astrbot/dashboard/routes/tools.py. The vulnerability is classified as CWE‑918. The flaw arises from unchecked manipulation of the mcp_server_config.url argument, allowing an attacker to specify arbitrary URLs for the application to request.
Affected Systems
The affected vendor is AstrBotDevs and the product is AstrBot, versions up to 4.25.2. No other product versions are currently listed as vulnerable.
Risk and Exploitability
The vulnerability is exploitable remotely through the exposed ToolsRoute.test_mcp_connection endpoint. This SSRF flaw corresponds to CWE‑918. The SSRF flaw permits the application to make outbound requests to arbitrary URLs supplied by an attacker. The CVSS score of 5.3 indicates a moderate severity, while the EPSS score of < 1% indicates a very low probability of exploitation. The vulnerability is not listed in the catalog.
OpenCVE Enrichment