{"id":"PYSEC-2026-2669","summary":"Azure MCP Server has Server-Side Request Forgery issue that allows authorized attacker to elevate privileges over a network","details":"Server-Side Request Forgery (SSRF) in Azure MCP Server allows an authorized attacker to elevate privileges over a network.","aliases":["CVE-2026-26118","GHSA-hhfx-wfvq-7g9c"],"modified":"2026-07-13T16:32:40.073871241Z","published":"2026-07-13T14:36:41.790695Z","references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-26118"},{"type":"WEB","url":"https://github.com/microsoft/mcp/commit/804ff60293206c4d8e832f772097238561bf2c34"},{"type":"PACKAGE","url":"https://github.com/microsoft/mcp"},{"type":"WEB","url":"https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-1.0.2"},{"type":"WEB","url":"https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-2.0.0-beta.17"},{"type":"WEB","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26118"},{"type":"PACKAGE","url":"https://pypi.org/project/msmcp-azure"},{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-hhfx-wfvq-7g9c"}],"affected":[{"package":{"name":"msmcp-azure","ecosystem":"PyPI","purl":"pkg:pypi/msmcp-azure"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"2.0.0b14"},{"fixed":"2.0.0b17"}]}],"database_specific":{"source":"https://github.com/pypa/advisory-database/blob/main/vulns/msmcp-azure/PYSEC-2026-2669.yaml"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}