
🚨Critical - @zereight/mcp-gitlab SSRF via X-GitLab-API-URL Token Exfil (CVE-2026-61559) When ENABLE_DYNAMIC_API_URL=true, @zereight/mcp-gitlab trusts the X-GitLab-API-URL request header as the base URL for outbound GitLab API calls with no allowlist/hostname checks. An attacker reaching the HTTP transport can redirect requests to an attacker host and capture the victim GitLab Private-Token. Deployments with ENABLE_DYNAMIC_API_URL=false are not affected. 👉Affected: @zereight/mcp-gitlab >= 0.0.1 and < 2.1.27 | Upgrade to 2.1.27

