Impact
Lokka is a Model Context Protocol server for Microsoft 365 environments. In versions prior to 2.1.2 the Lokka‑Microsoft component builds an Azure Resource Manager URL by concatenating a user‑controlled path onto the base management.azure.com address. This flaw, identified CWE‑918 (Exploitable Path Manipulation), can cause the constructed URL to resolve to an unintended host, resulting in an Azure Resource Manager bearer token being sent to that host. The CVSS score of 8.7 reflects the high severity of sending credentials to an unauthorized endpoint, while the EPSS score of less than 1% indicates a currently low likelihood of exploitation.
Affected Systems
The vulnerability affects Merill Lokka tooling running the Lokka‑Microsoft component before version 2.1.2. Any deployment of Lokka that interfaces with Microsoft Graph or other Microsoft 365 services, especially those that construct Azure Resource Manager URLs from user input, is impacted. Users running the default configuration with unpatched Lokka on the 2026-58201 timeframe are therefore at risk.
Risk and Exploitability
Exploitation would require an attacker able to supply a specially crafted URL path to the Lokka tool. The flaw would then redirect the bearer token to an unintended host, which could capture the credentials or allow lateral movement within the target environment. While the EPSS score indicates that such attacks are currently rare and the vulnerability is not listed in the CISA KEV catalog, the high CVSS score and the potential for credential leakage underscore a significant risk for systems that remain unpatched.
OpenCVE Enrichment