CVE-2026-32871Disclosure(jlowin / fastmcp)

LOWCVSS 10.0 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch jlowin fastmcp systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

FastMCP is a Pythonic way to build MCP servers and clients. Prior to version 3.2.0, the OpenAPIProvider in FastMCP exposes internal APIs to MCP clients by parsing OpenAPI specifications. The RequestDirector class is responsible for constructing HTTP requests to the backend service. A vulnerability exists in the _build_url() method. When an OpenAPI operation defines path parameters (e.g., /api/v1/users/{user_id}), the system directly substitutes parameter values into the URL template string without URL-encoding. Subsequently, urllib.parse.urljoin() resolves the final URL. Since urljoin() interprets ../ sequences as directory traversal, an attacker controlling a path parameter can perform path traversal attacks to escape the intended API prefix and access arbitrary backend endpoints. This results in authenticated SSRF, as requests are sent with the authorization headers configured in the MCP provider. This issue has been patched in version 3.2.0.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-918

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • fastmcp

Threat summary

  • Patch or workaround signal is available
  • 7 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 6 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • Peaked 4d ago at 2 mentions (2026-04-01); latest day: 1
  • 7 total mentions across 5 days

Affected systems

Vendors
Products
fastmcp

Deep dive

Activity timeline7 mentions / 5d
01122Mentions · 2026-04-01: 2Mentions · 2026-04-02: 2Mentions · 2026-04-03: 1Mentions · 2026-04-13: 1Mentions · 2026-09-24: 1Patch / Workaround · 2026-04-01: 1Patch / Workaround · 2026-04-13: 1Patch / Workaround · 2026-09-24: 1Technical Details · 2026-04-01: 2Technical Details · 2026-04-02: 2Technical Details · 2026-04-03: 1Technical Details · 2026-04-13: 104-0104-0204-0304-1309-24
Signal classification3 categories
Disclosure
342.9%
Patch
342.9%
General
114.3%
Referenced assets8 URLs
Classification over time
DateTotalLabels
2026-04-012
Disclosure1Patch1
2026-04-022
Disclosure2
2026-04-031
General1
2026-04-131
Patch1
2026-09-241
Patch1
Full discourse7 posts
  • MCP Scores@MCPScores
    Patch

    🚨 Critical vulnerability io.github.robotmcp/ros-mcp-server Unpatched critical vulnerability (CVE-2026-32871). A fixed version is available. Trust score: 21 → 0

    Post summary

    The text identifies CVE-2026-32871 as a critical vulnerability in ros-mcp-server and confirms that a fixed version is available, focusing primarily on remediation. No proof of concept, exploit code, or evidence of active exploitation is provided.

    1000038
    3 followersView on X
  • CCB Alert@CCBalert
    Patch

    Warning: Critical Path Traversal in the OpenAPIProvider in #FastMCP. CVE-2026-32871 CVSS(4.0): 10. The vulnerability results to an authenticated #SSRF. https://github.com/advisories/GHSA-vv7q-7jx5-f767 #Patch #Patch #Patch

    Post summary

    This is a warning about a critical path traversal vulnerability in FastMCP (CVE-2026-32871) with a high CVSS score that leads to authenticated SSRF, and the text points to a patch via a GitHub advisory.

    01000172
    7.2K followersView on X
  • White Rabbitx 🏴‍☠️@TheRabbitPy
    Patch

    🎯 CVE-2026-32871 (FastMCP OpenAPI Provider): Critical SSRF & path traversal—internal access. Patch: FastMCP latest https://www.tenable.com/cve/newest https://nvd.nist.gov/vuln/detail/CVE-2026-32871 https://github.com/fastmcp/fastmcp/security/advisories

    Post summary

    CVE-2026-32871 is a critical SSRF and path traversal flaw in FastMCP OpenAPI Provider; the latest FastMCP release contains a patch that mitigates the vulnerability.

    1000010
    492 followersView on X
  • CTIWatch@ctiwatchcloud
    General

    🔍 Today's Top Vulnerabilities 🔴 CVE-2026-32213 | CVSS 10.0 🔴 CVE-2026-32871 | CVSS 10.0 🔴 CVE-2026-33105 | CVSS 10.0 🔗 http://ctiwatch.cloud/vulnerabilities #CVE #Vulnerability #ThreatIntel

    Post summary

    The post briefly announces three CVEs with CVSS 10.0 scores and links to a vulnerability resource, but adds no exploit, patch, or detailed vulnerability description.

    0000036
    5.6K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-32871 FastMCP is a Pythonic way to build MCP servers and clients. Prior to version 3.2.0, the OpenAPIProvider in FastMCP exposes internal APIs to MCP clients by parsing Ope… https://www.cve.org/CVERecord?id=CVE-2026-32871

    Post summary

    CVE‑2026‑32871 is a newly disclosed vulnerability in FastMCP where the OpenAPIProvider exposes internal APIs to clients before version 3.2.0; no exploit, patch, or PoC information is yet reported.

    0000061
    56.9K followersView on X
  • 0day Signal@0dayPublishing
    Disclosure

    🚨 CVE-2026-32871: FastMCP OpenAPI Provider has an ... Path traversal via `../` in OpenAPI params + `urllib.parse.urljoin()` = authenticated SSRF with auth headers to any bac... https://zerodaysignal.com/vulnerability/CVE-2026-32871 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    FastMCP OpenAPI Provider suffers a path traversal bug that can be leveraged to perform authenticated SSRF using urllib.parse.urljoin(), enabling unauthenticated attackers to reach internal back-end services.

    0000049
    194 followersView on X
  • PulsePatch.io@pulsepatchio
    Disclosure

    A critical SSRF & path traversal vulnerability (CVE-2026-32871) has been identified in `FastMCP OpenAPI Provider`. This could lead to internal network access and sensitive file exposure. Review security configurations. #infosec #vulnerability #security https://www.pulsepatch.io/posts/cve-2026-32871-fastmcp-openapi-provider-ssrf-path-traversal

    Post summary

    A new critical SSRF and path traversal flaw, CVE‑2026‑32871, discovered in FastMCP OpenAPI Provider could allow internal network access and sensitive file exposure.

    0000030
    6 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appjlowinfastmcp---

Explore more