CVE-2026-25904

The Pydantic-AI MCP Run Python tool configures the Deno sandbox with an overly permissive configuration that allows the underlying Python code to access the localhost interface of the host to perform SSRF attacks. Note - the "mcp-run-python" project is archived and unlikely to receive a fix.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) La herramienta Pydantic-AI MCP Run Python configura el sandbox de Deno con una configuración excesivamente permisiva que permite al código Python subyacente acceder a la interfaz localhost del host para realizar ataques SSRF. Nota - el proyecto 'mcp-run-python' está archivado y es poco probable que reciba una solución.

09 Feb 2026, 09:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-09 09:16

Updated : 2026-06-17 10:25


NVD link : CVE-2026-25904

Mitre link : CVE-2026-25904

CVE.ORG link : CVE-2026-25904


JSON object : View

Products Affected

No product.

CWE
CWE-918

Server-Side Request Forgery (SSRF)