Model Context Protocol Server Vulnerability in mcp-searxng by ihor-sokoliuk
CVE-2026-54688
6.5MEDIUM
What is CVE-2026-54688?
The mcp-searxng Model Context Protocol server allows web search and URL-reading capabilities, but prior to version 1.2.0, it inadequately handles URLs supplied by users or AI agents. Specifically, it permits the fetching of potentially malicious content from the server-side if the MCP_HTTP_HARDEN setting is disabled, which is the default state. This can lead to exposure of sensitive information from loopback, private networks, or cloud metadata resources into the model context. Although file:// URLs are correctly rejected, the vulnerability allows attackers to exploit URL selections to access unauthorized endpoints. The risk has been mitigated in the subsequent release of version 1.2.0.
Affected Version(s)
mcp-searxng < 1.2.0
