


Perceptive Security
SOC/SIEM Consultancy

MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into separate endpoints with flexible routing strategies.…
Published:
31 augustus 2026 om 00:00:00
Alert date:
31 augustus 2026 om 21:03:29
Source:
nvd.nist.gov
Web Technologies, Identity & Access, Emerging Technologies
MCPHub, a unified hub for managing and orchestrating MCP servers and APIs, contains a critical missing authorization vulnerability prior to version 1.0.32. The built-in prompt and resource controllers perform no role checking on mutating POST/PUT routes under /api/prompts* and /api/resources*. These routes are attached to an authenticated router but lack an admin gate, and handlers never read req.user to verify permissions. DAO singletons written by these endpoints are consulted first for every session, ahead of any connected MCP server. This allows any authenticated non-admin user to create, overwrite, or shadow global prompt templates and resources served to all users. The primary impact is unauthorized integrity violation of globally-served records, with stored prompt injection into other users' LLM sessions as a downstream consequence. The vulnerability has been patched in MCPHub version 1.0.32.
Technical details
Mitigation steps:
Affected products:
MCPHub
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-79745
https://github.com/samanhappy/mcphub/commit/6ba55ac63954a71506e61c088753251e2ff643cf
https://github.com/samanhappy/mcphub/pull/1069
https://github.com/samanhappy/mcphub/releases/tag/v1.0.32
https://github.com/samanhappy/mcphub/security/advisories/GHSA-6cvf-cfch-4g7m
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
