Exposed dangerous method or function in MCP Gateway - CVE-2025-64443

 

Exposed dangerous method or function in MCP Gateway - CVE-2025-64443

Published: July 26, 2026


Vulnerability identifier: #VU139382
CSH Severity: High
CVSS v4: 7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2025-64443
CWE-ID: CWE-749
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to manipulate exposed MCP server features and tools.

The vulnerability exists due to exposed dangerous methods or functions in MCP Gateway when running in sse or streaming mode and processing browser-based access. A remote attacker can lure a victim into visiting a malicious website or viewing a malicious advertisement to manipulate exposed MCP server features and tools.

The issue does not affect instances running in the default stdio mode, which does not listen on network ports. User interaction is required.


Affected software

MCP Gateway

How to mitigate CVE-2025-64443

Install security update from vendor's website.

MCP Gateway - update to 0.28.0

External References

Related Security Bulletins