CVE-2026-49856Disclosure

LOWCVSS 4.3 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

@jshookmcp/jshook is an MCP server that gives AI agents tools for JavaScript analysis and security research. In version 0.3.1, he network domain has a central SSRF authorization policy that blocks private, loopback, link-local, and reserved targets unless an explicit authorization object allows private network access. The policy is enforced by raw HTTP/TCP/TLS RTT tools, but the ICMP probe and traceroute tools resolve the target and invoke the native ICMP/traceroute sink directly. An MCP client with access to an active network domain can therefore ask the jshookmcp server to probe internal addresses even when local SSRF access is disabled for the other raw network tools. This exposes an internal reachability and route mapping primitive from the server network position. Version 0.3.2 fixes the issue.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-918

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-08-13: 2Technical Details · 2026-08-13: 208-13
Signal classification1 categories
Disclosure
2100.0%
Referenced assets2 URLs
By indicator
Full discourse2 posts
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-49856 @jshookmcp/jshook is an MCP server that gives AI agents tools for JavaScript analysis and security research. In version 0.3.1, he network domain has a central SSRF au… https://www.cve.org/CVERecord?id=CVE-2026-49856 ----- Traducción: CVE-2026-49856 @js… https://infoflow.cloud`

    Post summary

    The tweet provides a basic disclosure of CVE‑2026‑49856, noting an SSRF flaw in the MCP server and linking to the CVE record, but offers no PoC, exploit, attack evidence, patch, or false‑positive claim.

    0000036
    97 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-49856 @jshookmcp/jshook is an MCP server that gives AI agents tools for JavaScript analysis and security research. In version 0.3.1, he network domain has a central SSRF au… https://www.cve.org/CVERecord?id=CVE-2026-49856

    Post summary

    The message announces an SSRF vulnerability in @jshookmcp/jshook’s MCP server (v0.3.1), but does not provide a PoC, exploit code, or patch information.

    00000996
    57.9K followersView on X

Explore more