{"id":"CVE-2026-61612","title":"@aborruso/ckan-mcp-server has SSRF via DNS-name → internal IP — incomplete fix of CVE-2026-53509","summary":"CKAN MCP Server is a tool for querying CKAN open data portals. Prior to version 0.4.108, the SSRF guard `validateServerUrl` (added for CVE-2026-33060, extended for CVE-2026-53509) validates only the hostname string and never resolves DNS…","severity":"medium","cvss":5.7,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N","cvssSource":"cna","cwe":["CWE-918"],"vendor":"ondata","product":"ckan-mcp-server","affected":["ckan-mcp-server @aborruso/ckan-mcp-server"],"published":"2026-09-21","updated":"2026-09-21","sourceUpdated":"2026-09-21T17:37:17.030Z","source":"CVEORG","sourceUrl":"https://www.cve.org/CVERecord?id=CVE-2026-61612","references":[{"url":"https://github.com/ondata/ckan-mcp-server/security/advisories/GHSA-798p-78g2-v556","label":"https://github.com/ondata/ckan-mcp-server/security/advisories/GHSA-798p-78g2-v556"},{"url":"https://github.com/ondata/ckan-mcp-server/commit/bb7439b553b9f965adc3d43bcd415c42eebe2f40","label":"https://github.com/ondata/ckan-mcp-server/commit/bb7439b553b9f965adc3d43bcd415c42eebe2f40"},{"url":"https://github.com/advisories/GHSA-3xm7-qw7j-qc8v","label":"https://github.com/advisories/GHSA-3xm7-qw7j-qc8v"},{"url":"https://github.com/advisories/GHSA-g84h-j7jj-x32p","label":"https://github.com/advisories/GHSA-g84h-j7jj-x32p"},{"url":"https://github.com/ondata/ckan-mcp-server/releases/tag/v0.4.108","label":"https://github.com/ondata/ckan-mcp-server/releases/tag/v0.4.108"}],"tags":["cve.org"],"ingestedAt":"2026-09-21T17:49:53.178Z","slug":"CVE-2026-61612","body":"## Overview\n\nCKAN MCP Server is a tool for querying CKAN open data portals. Prior to version 0.4.108, the SSRF guard `validateServerUrl` (added for CVE-2026-33060, extended for CVE-2026-53509) validates only the hostname string and never resolves DNS. Any caller-supplied `server_url` whose hostname *resolves* to an internal address passes the guard, so the server issues requests to loopback and cloud metadata (`169.254.169.254`). This is a third bypass of the same guard, and it reaches IMDS — strictly more than CVE-2026-53509, which only reached loopback. Version 0.4.108 contains an updated fix.\n\n## Affected\n\n- `ckan-mcp-server @aborruso/ckan-mcp-server`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":31,"depthScoreParts":{"impact":31.4,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}