Network Vulnerability in ToolHive Utility from Stacklok Could Compromise Server Security
CVE-2026-58197

8.8HIGH

Key Information:

Vendor

Stacklok

Vendor
CVE Published:
18 September 2026

What is CVE-2026-58197?

The ToolHive utility, designed for managing Model Context Protocol (MCP) servers, exhibits a significant security vulnerability. Earlier versions of ToolHive CLI and ToolHive Studio do not implement adequate network isolation for locally operated MCP server containers, allowing malicious entities to access critical host services via the Docker gateway. This flaw permits unauthorized interaction with ToolHive-managed MCP proxies and the control plane. Additionally, ToolHive Studio incorrectly disables secure isolation defaults, further exposing the system. These vulnerabilities have been rectified in the releases of ToolHive CLI 0.30.1 and ToolHive Studio 0.38.0, reinforcing security and network permissions.

Affected Version(s)

toolhive < 0.30.1

toolhive-studio < 0.38.0

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.