{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","feed_url":"https://feed.craftedsignal.io/products/api-mcp/feed.json","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":7.3,"id":"CVE-2026-19374"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["api-mcp"],"_cs_severities":["high"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["adafap"],"content_html":"\u003cp\u003eThe adafap api-mcp component is susceptible to server-side request forgery (SSRF) via improper validation of the 'url' argument within the 'customAxios' function located in 'app/api/proxy/route.ts'. This vulnerability exists in versions up to the commit hash 92b9a5d04acfec165c7d4ef852496593aa87be06. Because the product follows a continuous, rolling-release delivery model, there are no defined version numbers to track for patching. An unauthenticated remote attacker can supply a malicious URL to the proxy endpoint, forcing the application to perform requests to internal services or external targets on behalf of the server. This can lead to unauthorized information disclosure or interaction with restricted internal infrastructure. As of the time of reporting, the maintainers have not issued a response or a patch for this finding.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows remote attackers to perform SSRF, potentially gaining unauthorized access to internal resources, cloud metadata services, or auxiliary network infrastructure. The impact is elevated by the lack of input sanitization in the proxy function, which provides a direct vector for internal network scanning and data exfiltration from private endpoints.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImplement strict URL allowlisting or validation in 'app/api/proxy/route.ts' to ensure the 'url' argument passed to 'customAxios' corresponds to approved, non-sensitive domains.\u003c/li\u003e\n\u003cli\u003eApply network-level egress filtering on the server hosting the affected application to restrict outbound requests to only necessary and known-safe destinations.\u003c/li\u003e\n\u003cli\u003eReview web access logs for requests to 'app/api/proxy/route.ts' where the 'url' parameter contains internal IP addresses (e.g., 169.254.169.254, 10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16).\u003c/li\u003e\n\u003cli\u003eMonitor for anomalous outbound traffic from the affected service container or host to prevent exfiltration or internal probing.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-09T23:49:04Z","date_published":"2026-08-09T23:49:04Z","id":"https://feed.craftedsignal.io/briefs/2026-08-ssrf-adafap-api-mcp/","summary":"An unauthenticated remote server-side request forgery (SSRF) vulnerability in the 'customAxios' function of adafap api-mcp allows attackers to make unauthorized requests from the server environment.","title":"SSRF Vulnerability in adafap api-mcp (CVE-2026-19374)","url":"https://feed.craftedsignal.io/briefs/2026-08-ssrf-adafap-api-mcp/"}],"language":"en","title":"CraftedSignal Threat Feed - Api-Mcp","version":"https://jsonfeed.org/version/1.1"}