Insecure Secrets Storage in ToolHive MCP Server Management by Stacklok
CVE-2025-47274
What is CVE-2025-47274?
ToolHive, a utility for managing Model Context Protocol (MCP) servers, contains a vulnerability where secrets are unintentionally written to run configuration files during the startup process of MCP server containers. This flaw affects versions before 0.0.33. An attacker with access to the user's home directory can read these secrets without direct access to the secure secrets store. This issue only affects secrets associated with containers that have existing run configurations at any given time. Version 0.0.33 addresses this flaw, and users are advised to stop any running MCP servers and delete existing configurations to mitigate risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
toolhive < 0.0.33
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
