CVE-2026-73082: Activepieces: Server-side request forgery in MCP tool validation endpoint
Activepieces is an open source AI workflow automation platform. Prior to 0.82.0, the POST /api/v1/projects/:projectId/mcp-server/validate-agent-mcp-tool endpoint makes an outbound HTTP or SSE request to a user-supplied serverUrl without URL validation or SSRF protection. An authenticated user can cause the Activepieces server to connect to internal services, cloud metadata endpoints, or arbitrary external hosts and probe network reachability from the Activepieces host. This issue is fixed in version 0.82.0.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Activepiecesto a version that resolves this vulnerability.Fixed in 0.82.0
Event History
Frequently Asked Questions
What is the severity of CVE-2026-73082?
The severity of CVE-2026-73082 is rated as medium with a risk score of 55.
How do I fix CVE-2026-73082?
To fix CVE-2026-73082, upgrade your Activepieces installation to version 0.82.0 or later.
What does CVE-2026-73082 exploit?
CVE-2026-73082 exploits a server-side request forgery vulnerability in the MCP tool validation endpoint.
Who is affected by CVE-2026-73082?
Any authenticated user of Activepieces prior to version 0.82.0 is affected by CVE-2026-73082.
What type of vulnerability is CVE-2026-73082?
CVE-2026-73082 is categorized as an information leak and server-side request forgery.