VulnSea

universal-tool-calling-protocol has 5 CVEs on record. 5 were published in the last 90 days. The busiest recent month was September 2026 with 5. The median CVSS is 6.9 (medium). None have a confirmed exploitation report. The most common weakness class is CWE-918 (4).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
6.9
Publish → KEV
—
Last 90 days
5 prev 0

Weakness classes

Products

  • python-utcp 5
Follow universal-tool-calling-protocol:RSS feedSave a search →Embed badge ↗
5
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

universal-tool-calling-protocol vulnerabilities

CVEs affecting universal-tool-calling-protocol, newest first. Open any entry for full detail, references, and exploit status.

5 CVEsRSS

CVE-2026-101058Medium· 6.9
today

python-utcp (pip package utcp-http) before 1.1.12 does not verify whether tool URLs declared in a hand-written UTCP manual point at the agent's own loopback interface when that manual is discovered from a remote, non-loopback origin

python-utcp (pip package utcp-http) before 1.1.12 does not verify whether tool URLs declared in a hand-written UTCP manual point at the agent's own loopback interface when that manual is discovered from a remote, non-loopback origin. Bec…

▾ Sunlituniversal-tool-calling-protocol · python-utcpvia NVD
CVE-2026-101060High· 8.2
today

python-utcp versions before 1.1.4 contain a server-side request forgery vulnerability in HttpCommunicationProtocol.call_tool that validates the initial tool URL but follows HTTP redirects without re-validating the target

python-utcp versions before 1.1.4 contain a server-side request forgery vulnerability in HttpCommunicationProtocol.call_tool that validates the initial tool URL but follows HTTP redirects without re-validating the target. Attackers contr…

▾ Twilightuniversal-tool-calling-protocol · python-utcpvia NVD
CVE-2026-101057Low· 3.1
today

utcp-mcp (the MCP plugin of python-utcp) through 1.1.2 connects to the HTTP and WebSocket MCP server URLs given in a call template's mcpServers configuration without the ensure_secure_url validation that the HTTP-family plugins apply, so…

utcp-mcp (the MCP plugin of python-utcp) through 1.1.2 connects to the HTTP and WebSocket MCP server URLs given in a call template's mcpServers configuration without the ensure_secure_url validation that the HTTP-family plugins apply, so…

▾ Sunlituniversal-tool-calling-protocol · python-utcpvia NVD
CVE-2026-101061Medium· 4.7
today

utcp-gql before 1.1.1 and utcp-websocket before 1.1.1 contain server-side request forgery vulnerabilities due to incomplete application of CVE-2026-44661 fixes

utcp-gql before 1.1.1 and utcp-websocket before 1.1.1 contain server-side request forgery vulnerabilities due to incomplete application of CVE-2026-44661 fixes. The GraphQL plugin uses a vulnerable prefix check allowing bypass URLs like …

▾ Sunlituniversal-tool-calling-protocol · python-utcpvia NVD
CVE-2026-101059High· 7.1
today

utcp-http before 1.1.4 fails to validate the OAuth2 tokenUrl field from remote OpenAPI specifications, allowing attackers to redirect credential submission to arbitrary endpoints

utcp-http before 1.1.4 fails to validate the OAuth2 tokenUrl field from remote OpenAPI specifications, allowing attackers to redirect credential submission to arbitrary endpoints. When a victim registers an attacker-controlled OpenAPI sp…

▾ Twilightuniversal-tool-calling-protocol · python-utcpvia NVD
universal-tool-calling-protocol vulnerabilities (CVEs) · VulnSea