2026-07-28 9:5CVE-2026-9680alibaba
PUBLISHED5.2CWE-1188

MCP Server Exposure via Insecure Default Binding on alibabacloud-rds-openapi-mcp-server

Improper exposure of the MCP server in alibabacloud-rds-openapi-mcp-server allows remote attackers to invoke exposed MCP tools via network access to an MCP endpoint listening on all network interfaces by default.

Problem type

Affected products

Alibaba

Alibaba Cloud RDS OpenAPI MCP Server

<= 3.1.2 - AFFECTED

References

GitHub Security Advisories

GHSA-fw7c-j2q8-f24m

Improper exposure of the MCP server in alibabacloud-rds-openapi-mcp-server allows remote...

https://github.com/advisories/GHSA-fw7c-j2q8-f24m

Improper exposure of the MCP server in alibabacloud-rds-openapi-mcp-server allows remote attackers to invoke exposed MCP tools via network access to an MCP endpoint listening on all network interfaces by default.

JSON source

https://cveawg.mitre.org/api/cve/CVE-2026-9680
Click to expand
{
  "dataType": "CVE_RECORD",
  "dataVersion": "5.2",
  "cveMetadata": {
    "cveId": "CVE-2026-9680",
    "assignerOrgId": "0cc2b86d-1d45-434d-ae74-11d09ec61ae8",
    "assignerShortName": "alibaba",
    "dateUpdated": "2026-07-28T09:05:30.652Z",
    "dateReserved": "2026-05-27T09:18:25.851Z",
    "datePublished": "2026-07-28T09:05:30.652Z",
    "state": "PUBLISHED"
  },
  "containers": {
    "cna": {
      "providerMetadata": {
        "orgId": "0cc2b86d-1d45-434d-ae74-11d09ec61ae8",
        "shortName": "alibaba",
        "dateUpdated": "2026-07-28T09:05:30.652Z"
      },
      "title": "MCP Server Exposure via Insecure Default Binding on alibabacloud-rds-openapi-mcp-server",
      "descriptions": [
        {
          "lang": "en",
          "value": "Improper exposure of the MCP server in alibabacloud-rds-openapi-mcp-server allows remote attackers to invoke exposed MCP tools via network access to an MCP endpoint listening on all network interfaces by default.",
          "supportingMedia": [
            {
              "type": "text/html",
              "base64": false,
              "value": "<p>Improper exposure of the MCP server in alibabacloud-rds-openapi-mcp-server allows remote attackers to invoke exposed MCP tools via network access to an MCP endpoint listening on all network interfaces by default.</p>"
            }
          ]
        }
      ],
      "affected": [
        {
          "vendor": "Alibaba",
          "product": "Alibaba Cloud RDS OpenAPI MCP Server",
          "defaultStatus": "unaffected",
          "versions": [
            {
              "version": "1.8.0",
              "status": "affected",
              "versionType": "custom",
              "lessThanOrEqual": "3.1.2"
            }
          ]
        }
      ],
      "problemTypes": [
        {
          "descriptions": [
            {
              "lang": "en",
              "description": "CWE-1188 Initialization of a resource with an insecure default",
              "cweId": "CWE-1188",
              "type": "CWE"
            }
          ]
        }
      ],
      "references": [
        {
          "url": "https://github.com/aliyun/alibabacloud-rds-openapi-mcp-server"
        }
      ],
      "impacts": [
        {
          "capecId": "CAPEC-1",
          "descriptions": [
            {
              "lang": "en",
              "value": "CAPEC-1 Accessing Functionality Not Properly Constrained by ACLs"
            }
          ]
        }
      ],
      "metrics": [
        {
          "format": "CVSS",
          "scenarios": [
            {
              "lang": "en",
              "value": "GENERAL"
            }
          ],
          "cvssV3_1": {
            "version": "3.1",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N",
            "attackVector": "NETWORK",
            "attackComplexity": "LOW",
            "privilegesRequired": "NONE",
            "userInteraction": "NONE",
            "scope": "CHANGED",
            "confidentialityImpact": "LOW",
            "integrityImpact": "NONE",
            "availabilityImpact": "NONE",
            "baseScore": 5.8,
            "baseSeverity": "MEDIUM"
          }
        }
      ]
    }
  }
}