{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/python-utcp--1.1.4/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":8.2,"id":"CVE-2026-101060"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["python-utcp (\u003c 1.1.4)"],"_cs_severities":["high"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":[],"content_html":"\u003cp\u003eThe python-utcp library, specifically versions prior to 1.1.4, is affected by a server-side request forgery (SSRF) vulnerability identified as CVE-2026-101060. The issue resides in the HttpCommunicationProtocol.call_tool method, which fails to re-validate the target URL when an HTTP redirect is encountered. An attacker who controls a tool endpoint can respond with a 302 redirect to an arbitrary URL. Because the library does not verify the destination post-redirect, the UTCP client will follow the redirect to internal resources, such as cloud metadata services (e.g., 169.254.169.254) or internal HTTP endpoints. The final response body is then returned to the attacker, potentially leading to unauthorized data exfiltration or sensitive configuration disclosure.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows unauthenticated attackers to perform SSRF attacks, enabling access to internal network resources and cloud metadata services. This can result in the exfiltration of sensitive information, such as IAM credentials or internal configuration data, depending on the environment where the application is deployed.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003eUpgrade the python-utcp library to version 1.1.4 or later immediately.\u003c/li\u003e\n\u003cli\u003eImplement outbound network egress filtering on all servers running python-utcp to prevent connections to sensitive ranges like 169.254.169.254.\u003c/li\u003e\n\u003cli\u003eAudit applications using the HttpCommunicationProtocol.call_tool method to identify if they handle untrusted user-supplied URLs.\u003c/li\u003e\n\u003c/ol\u003e\n","date_modified":"2026-09-27T19:09:19Z","date_published":"2026-09-27T19:09:19Z","id":"https://feed.craftedsignal.io/briefs/2026-09-python-utcp-ssrf/","summary":"The python-utcp library versions before 1.1.4 contain a server-side request forgery vulnerability due to improper validation of HTTP redirects within the HttpCommunicationProtocol.call_tool method.","title":"SSRF Vulnerability in python-utcp via HttpCommunicationProtocol","url":"https://feed.craftedsignal.io/briefs/2026-09-python-utcp-ssrf/"}],"language":"en","title":"CraftedSignal Threat Feed - Python-Utcp (\u003c 1.1.4)","version":"https://jsonfeed.org/version/1.1"}