CVE-2026-101064: Obot before v0.23.0 Server-Side Request Forgery via MCP

Published Sep 27, 2026
·
Updated

Obot before v0.23.0 contains a server-side request forgery vulnerability in remote MCP server registration that allows privileged users to specify arbitrary URLs without destination validation. Attackers with Power User or higher roles can coerce Obot to make requests to internal services and cloud metadata endpoints, reading responses in error messages to disclose sensitive credentials.

Affected Software

1 affected component
Obot Obot<0.23.0

Event History

Sep 27, 2026
CVE Published
via MITRE·08:49 PM
Data Sourced
via MITRE·08:49 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:17 PM
DescriptionSeverityWeakness

Frequently Asked Questions

1

Which users can exploit this issue?

Exploitation requires a user with the Power User role or a higher-privileged role. The attack can be performed remotely and does not require user interaction.

2

What systems or data could be reached through the vulnerable server?

A privileged attacker can register a remote MCP server using arbitrary URLs, causing Obot to request internal services or cloud metadata endpoints. Responses may be exposed in error messages, potentially disclosing sensitive credentials.

3

What versions need remediation?

Obot versions before 0.23.0 are affected. Updating to version 0.23.0 or later addresses the affected version range described here.

4

How can I determine whether exploitation may have occurred?

Review remote MCP server registrations created by Power Users or higher roles for URLs targeting internal address space or cloud metadata services. Also inspect related error messages for responses that may contain credentials or other sensitive data.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203