This issue affects Apache SkyWalking MCP: 0.1.0.
Users are recommended to upgrade to version 0.2.0, which fixes this issue.
Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 13 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 13 Apr 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Server-Side Request Forgery via SW-URL Header vulnerability in Apache SkyWalking MCP. This issue affects Apache SkyWalking MCP: 0.1.0. Users are recommended to upgrade to version 0.2.0, which fixes this issue. | |
| Title | Apache SkyWalking MCP: Server-Side Request Forgery via SW-URL Header in MCP Server | |
| Weaknesses | CWE-918 | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2026-04-13T13:59:29.737Z
Reserved: 2026-03-28T02:38:58.575Z
Link: CVE-2026-34476
Updated: 2026-04-13T13:57:59.986Z
Status : Awaiting Analysis
Published: 2026-04-13T13:16:40.847
Modified: 2026-04-13T15:17:33.490
Link: CVE-2026-34476
No data.
OpenCVE Enrichment
No data.