PT-2026-31715 · Unknown · Apollo-Mcp-Server
Published
2026-04-09
·
Updated
2026-04-09
·
CVE-2026-35577
CVSS v3.1
8.1
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Apollo MCP Server versions prior to 1.7.0
Description
The Apollo MCP Server, a Model Context Protocol server exposing GraphQL operations, did not validate the Host header on incoming HTTP requests when using StreamableHTTP transport. This could allow a malicious website, visited by a user running the server locally, to bypass same-origin policy restrictions using DNS rebinding techniques and issue requests to the local MCP server. Successful exploitation could allow an attacker to invoke tools or access resources exposed by the MCP server on behalf of the local user. This issue is limited to HTTP-based StreamableHTTP transport and does not affect servers using stdio transport.
Recommendations
Update to version 1.7.0 or later.
Fix
Origin Validation Error
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apollo-Mcp-Server