Bypass Vulnerability in SearXNG Model Context Protocol Server
CVE-2026-54689

6.3MEDIUM

Key Information:

Vendor
CVE Published:
15 September 2026

What is CVE-2026-54689?

The Model Context Protocol server, an integral component of SearXNG, is vulnerable to a URL policy bypass due to improper revalidation of redirect targets. This vulnerability arises when the web_url_read policy is enabled and MCP_HTTP_HARDEN is activated, but MCP_HTTP_ALLOW_PRIVATE_URLS is not. An attacker can exploit this flaw to force the server to fetch internal HTTP resources or loopback addresses, exposing content from local services, private APIs, and cloud metadata endpoints. The issue has been addressed in version 1.2.0.

Affected Version(s)

mcp-searxng < 1.2.0

References

CVSS V3.1

Score:
6.3
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.