Impact
A flaw in the raw_sentry_api component of ddfourtwo sentry-selfhosted-mcp allows an attacker to craft a request that changes the value of the endpoint argument. This manipulation causes the server to perform outbound HTTP requests to arbitrary targets, including internal network resources, thereby enabling disclosure of sensitive data, internal services, or potential lateral movement. The vulnerability can be triggered from outside the system and may lead to confidentiality, integrity, or availability compromise of hosts accessed through the forged requests.
Affected Systems
The affected product is ddfourtwo sentry-selfhosted-mcp, version 0.4.0. No additional versions are identified in the data, so any installation that includes the raw_sentry_api function is potentially vulnerable.
Risk and Exploitability
The CVSS score of 6.9 indicates a medium severity, and the EPSS score is not provided. The vulnerability is publicly known and exploits have been released, increasing the likelihood of real-world attacks. Although the vulnerability is not yet listed in the CISA KEV catalog, the ability to perform outbound requests remotely makes this issue likely to be attacked by adversaries with network reach to the target. The attack vector is inferred to be remote, based on the description that the exploit can be launched from outside the system.
OpenCVE Enrichment