CVE-2026-77822
Received Received - Intake

Server-Side Request Forgery in IBM ContextForge MCP Gateway

Vulnerability report for CVE-2026-77822, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-04

Last updated on: 2026-09-04

Assigner: IBM Corporation

Description

IBM ContextForge MCP Gateway could allow a remote authenticated attacker to obtain sensitive information due to server-side request forgery via DNS rebinding.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-04
Last Modified
2026-09-04
Generated
2026-09-04
AI Q&A
2026-09-04
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
ibm contextforge_mcp_gateway to 1.0.8 (inc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-918 The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

IBM ContextForge MCP Gateway has a server-side request forgery (SSRF) vulnerability (CVE-2026-77822) in its Agent-to-Agent (A2A) invocation endpoint. An authenticated low-privileged attacker can bypass SSRF protections using DNS rebinding to trick the gateway into sending outbound HTTP requests to internal network resources and returning their full response bodies.

Detection Guidance

Detecting this SSRF vulnerability via DNS rebinding requires monitoring outbound HTTP requests from the IBM ContextForge MCP Gateway, particularly to internal network resources. Check for unusual DNS resolutions or HTTP requests originating from the gateway to internal IPs or domains. Review logs for A2A invocation endpoint activity and unexpected outbound connections.

Impact Analysis

This vulnerability allows an attacker to access sensitive internal network resources by exploiting the gateway's outbound HTTP requests. It can lead to unauthorized disclosure of confidential data, potential data manipulation, and compromise of internal systems due to the attacker's ability to retrieve full response bodies from internal endpoints.

Compliance Impact

This vulnerability can lead to unauthorized access to sensitive data, which may violate GDPR's data protection principles and HIPAA's security and privacy requirements. It risks exposing personal or health information, potentially resulting in regulatory penalties, loss of trust, and legal consequences for non-compliance.

Mitigation Strategies

Immediately upgrade IBM ContextForge MCP Gateway to version v1.0.9. As temporary mitigations, disable A2A functionality, restrict A2A permissions, or implement network-level egress controls to block unauthorized outbound requests. Monitor for any signs of exploitation.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-77822. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart