Bypass Vulnerability in SearXNG Model Context Protocol Server
CVE-2026-54689
6.3MEDIUM
What is CVE-2026-54689?
The Model Context Protocol server, an integral component of SearXNG, is vulnerable to a URL policy bypass due to improper revalidation of redirect targets. This vulnerability arises when the web_url_read policy is enabled and MCP_HTTP_HARDEN is activated, but MCP_HTTP_ALLOW_PRIVATE_URLS is not. An attacker can exploit this flaw to force the server to fetch internal HTTP resources or loopback addresses, exposing content from local services, private APIs, and cloud metadata endpoints. The issue has been addressed in version 1.2.0.
Affected Version(s)
mcp-searxng < 1.2.0
