Known vulnerabilities in MCP Gateway
Vendor:
Docker Inc.
Software:
MCP Gateway
Software CPE:
cpe:2.3:a:docker:mcp_gateway:*:*:*:*:*:*:*:*
Website:
https://www.docker.com/
Total vulnerabilities:
8
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
0.43.3
0.43.1
0.42.3
0.42.2
0.42.1
0.42.0
0.41.0
0.40.4
0.40.3
0.40.2
0.40.1
0.40.0
0.39.3
0.39.2
0.39.1
0.39.0
0.38.0
0.37.0
0.36.0
0.35.0
0.34.0
0.33.0
0.32.0
0.31.0
0.30.0
0.29.0
0.28.0
0.27.0
0.26.0
0.25.0
0.24.0
0.23.0
0.22.0
0.21.0
0.20.0
0.19.0
0.18.0
0.17.0
0.16.0
0.15.0
0.14.0
0.13.0
0.12.0
0.11.0
0.10.0
0.9.9
0.9.8
0.9.7
0.9.6
0.9.5
0.9.4
0.9.3
0.9.1
0.9.0
0.8.0
0.7.4
0.7.3
0.7.2
0.7.1
0.7.0
0.6.0
0.5.3
0.5.2
0.5.1
0.5.0
0.4.4
0.4.3
0.4.2
0.4.1
0.4.0
Vulnerabilities (8)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU139382 - Exposed Dangerous Method or Function CVE-2025-64443 |
CWE-749 | High | 0.28.0 | 26.07.2026 |
SB2026072607 |
||
| #VU139381 - Missing Authentication for Critical Function |
CWE-306 | High | 0.43.1 | 26.07.2026 |
SB2026072606 |
||
| #VU139380 - Improper Verification of Cryptographic Signature |
CWE-347 | High | 0.43.1 | 26.07.2026 |
SB2026072606 |
||
| #VU139379 - Missing Authorization |
CWE-862 | Medium | 0.43.1 | 26.07.2026 |
SB2026072606 |
||
| #VU139378 - Missing Authorization |
CWE-862 | Low | 0.43.1 | 26.07.2026 |
SB2026072606 |
||
| #VU139377 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') |
CWE-22 | Low | 0.43.1 | 26.07.2026 |
SB2026072606 |
||
| #VU139376 - Server-Side Request Forgery (SSRF) |
CWE-918 | Low | 0.43.1 | 26.07.2026 |
SB2026072606 |
||
| #VU135199 - Argument Injection or Modification CVE-2026-55887 |
CWE-88 | High | 0.42.2 | 25.06.2026 |
SB2026062549 |