MCP Gateway Vulnerability in Docker
CVE-2026-55887
8.7HIGH
What is CVE-2026-55887?
The MCP Gateway, utilized for the deployment of MCP servers, has a significant vulnerability that allows attackers to manipulate Docker images. Versions 0.21.0 through 0.42.2 are susceptible due to improper handling of the attacker-controlled 'io.docker.server.metadata' OCI image label. This flaw permits runtime-shaping fields like Volumes, User, and ExtraHosts to be appended without an origin allowlist. Consequently, a malicious actor can execute arbitrary code on the host machine, leading to unauthorized access to the filesystem and Docker socket mounts. This issue has been resolved in version 0.42.2, emphasizing the importance of keeping software updated for security.
Affected Version(s)
mcp-gateway >= 0.21.0, < 0.42.2
