CVE-2026-33060 describes an arbitrary URL redirection vulnerability in CKAN MCP Server versions prior to 0.4.85, impacting tools such as ckan_package_search and sparql_query. This flaw allows attackers to make HTTP requests to arbitrary internal or cloud endpoints due to a lack of URL validation on the base_url parameter. Rated MEDIUM (CVSS 5.3) with high attack complexity, exploitation requires prompt injection to control the base_url, potentially leading to internal network scanning, cloud metadata theft, and SQL/SPARQL injection. There is no evidence of active exploitation, public exploit code, or significant community discussion for this vulnerability. The issue has been resolved in version 0.4.85.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 0.4.85CPE matchmatch criteria | cpe:2.3:a:ondata:ckan_mcp_server:*:*:*:*:*:node.js:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.