Description
CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. Prior to 1.7.2, GET /mcp/form/config/{formKey} calls McpController.getMcpField without authentication because ShiroFilter.addPublicPathFilters marks /mcp/** as anonymous and the controller has no permission annotation. An unauthenticated caller can obtain field names, types, required flags, default values, options, validation rules, and binding sources for CRM modules, allowing reconstruction of the application data model and more targeted attacks against other inputs. This issue is fixed in version 1.7.2.
Published: 2026-09-18
Score: 6.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Information Disclosure
Action: Apply Patch
AI Analysis

Impact

CordysCRM exposes the GET /mcp/form/config/{formKey} endpoint without requiring authentication. The ShiroFilter configuration treats all /mcp/ paths as anonymous, and the controller lacks permission annotations, enabling unauthenticated users to retrieve detailed field metadata for CRM modules. The leaked information includes field names, data types, required flags, default values, options, validation rules, and binding sources, which can be used to reconstruct the application’s data model and facilitate more targeted attacks on other inputs.

Affected Systems

The vulnerability affects versions of CordysCRM released by 1Panel-dev prior to 1.7.2. The issue is addressed in version 1.7.2 and later releases.

Risk and Exploitability

With a CVSS score of 6.9 the vulnerability falls into the moderate severity range, and its EPSS score is currently unavailable. The endpoint is publicly accessible over HTTP, making discovery straightforward for remote attackers. Although the vulnerability does not grant direct code execution, the disclosed model information can aid attackers in planning subsequent data ingestion or injection attacks, increasing overall risk. The vulnerability is not listed in the CISA KEV catalog.

Generated by OpenCVE AI on September 19, 2026 at 11:13 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update CordysCRM to version 1.7.2 or later.
  • If upgrading is temporarily infeasible, restrict access to /mcp/ endpoints by adding authentication requirements in the ShiroFilter configuration.
  • Block or rate-limit unauthenticated GET requests to /mcp/form/config/* using a firewall or reverse proxy.

Generated by OpenCVE AI on September 19, 2026 at 11:13 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 22 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sun, 20 Sep 2026 02:30:00 +0000

Type Values Removed Values Added
First Time appeared 1panel-dev
1panel-dev cordyscrm
Vendors & Products 1panel-dev
1panel-dev cordyscrm

Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Description CordysCRM is an open source AI-powered customer relationship management system that supports private deployment. Prior to 1.7.2, GET /mcp/form/config/{formKey} calls McpController.getMcpField without authentication because ShiroFilter.addPublicPathFilters marks /mcp/** as anonymous and the controller has no permission annotation. An unauthenticated caller can obtain field names, types, required flags, default values, options, validation rules, and binding sources for CRM modules, allowing reconstruction of the application data model and more targeted attacks against other inputs. This issue is fixed in version 1.7.2.
Title CordysCRM MCP Form Configuration Endpoint Exposed to Anonymous Users
Weaknesses CWE-200
References
Metrics cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

1panel-dev Cordyscrm
cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-09-21T16:38:13.208Z

Reserved: 2026-07-17T14:11:15.483Z

Link: CVE-2026-63646

cve-icon Vulnrichment

Updated: 2026-09-21T16:38:08.646Z

cve-icon NVD

Status : Deferred

Published: 2026-09-18T20:17:20.627

Modified: 2026-09-24T19:39:45.600

Link: CVE-2026-63646

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T02:15:16Z

Weaknesses
  • CWE-200

    Exposure of Sensitive Information to an Unauthorized Actor