<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Cpe:2.3:a:ibm:mcp-Contextforge-Gateway:*:*:*:*:*:*:*:* - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/cpes/cpe2.3aibmmcp-contextforge-gateway/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Fri, 04 Sep 2026 17:26:58 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/cpes/cpe2.3aibmmcp-contextforge-gateway/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Information Disclosure via DNS Rebinding in IBM ContextForge MCP Gateway</title><link>https://feed.craftedsignal.io/briefs/2026-09-cve-2026-18905/</link><pubDate>Fri, 04 Sep 2026 17:26:58 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-cve-2026-18905/</guid><description>IBM ContextForge MCP Gateway versions 1.0.6 and earlier contain a DNS rebinding vulnerability that allows remote authenticated attackers to access sensitive information during tool invocation.</description><content:encoded><![CDATA[<p>IBM ContextForge MCP Gateway (mcp-contextforge-gateway) versions 1.0.6 and earlier are vulnerable to a DNS rebinding flaw during the tool invocation process. This vulnerability allows an attacker who has already achieved authenticated access to the gateway to manipulate DNS resolution to circumvent security controls. By performing a DNS rebinding attack, the adversary can force the gateway to interact with unintended internal resources or services, ultimately leading to the unauthorized disclosure of sensitive data processed by the MCP (Model Context Protocol) gateway. Defenders should prioritize patching, as this vulnerability represents a significant risk to the confidentiality of data handled by the ContextForge integration.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of this vulnerability enables a remote authenticated attacker to bypass intended security boundaries within the MCP infrastructure. This can result in the exfiltration of sensitive information processed by the gateway, potentially leading to unauthorized data exposure across internal systems integrated with ContextForge.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Upgrade to IBM ContextForge MCP Gateway version 1.0.7 or later to remediate CVE-2026-18905.</li>
<li>Audit logs for authenticated sessions that perform unusually frequent or rapid DNS resolution changes during tool execution.</li>
<li>Implement strict egress filtering on the gateway host to restrict connections to authorized internal and external endpoints.</li>
</ul>
]]></content:encoded><category domain="severity">high</category><category domain="type">advisory</category><category>vulnerability</category><category>information-disclosure</category><category>cve-2026-18905</category></item></channel></rss>