{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/mcp-contextforge-gateway--1.0.6/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:ibm:mcp-contextforge-gateway:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.7,"id":"CVE-2026-18905"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["mcp-contextforge-gateway (\u003c= 1.0.6)"],"_cs_severities":["high"],"_cs_tags":["vulnerability","information-disclosure","cve-2026-18905"],"_cs_type":"advisory","_cs_vendors":["IBM"],"content_html":"\u003cp\u003eIBM ContextForge MCP Gateway (mcp-contextforge-gateway) versions 1.0.6 and earlier are vulnerable to a DNS rebinding flaw during the tool invocation process. This vulnerability allows an attacker who has already achieved authenticated access to the gateway to manipulate DNS resolution to circumvent security controls. By performing a DNS rebinding attack, the adversary can force the gateway to interact with unintended internal resources or services, ultimately leading to the unauthorized disclosure of sensitive data processed by the MCP (Model Context Protocol) gateway. Defenders should prioritize patching, as this vulnerability represents a significant risk to the confidentiality of data handled by the ContextForge integration.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability enables a remote authenticated attacker to bypass intended security boundaries within the MCP infrastructure. This can result in the exfiltration of sensitive information processed by the gateway, potentially leading to unauthorized data exposure across internal systems integrated with ContextForge.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade to IBM ContextForge MCP Gateway version 1.0.7 or later to remediate CVE-2026-18905.\u003c/li\u003e\n\u003cli\u003eAudit logs for authenticated sessions that perform unusually frequent or rapid DNS resolution changes during tool execution.\u003c/li\u003e\n\u003cli\u003eImplement strict egress filtering on the gateway host to restrict connections to authorized internal and external endpoints.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-04T17:26:58Z","date_published":"2026-09-04T17:26:58Z","id":"https://feed.craftedsignal.io/briefs/2026-09-cve-2026-18905/","summary":"IBM ContextForge MCP Gateway versions 1.0.6 and earlier contain a DNS rebinding vulnerability that allows remote authenticated attackers to access sensitive information during tool invocation.","title":"Information Disclosure via DNS Rebinding in IBM ContextForge MCP Gateway","url":"https://feed.craftedsignal.io/briefs/2026-09-cve-2026-18905/"}],"language":"en","title":"CraftedSignal Threat Feed - Mcp-Contextforge-Gateway (\u003c= 1.0.6)","version":"https://jsonfeed.org/version/1.1"}