漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Authentication Bypass and Audience Confusion in MCP Toolbox OAuth Provider
Vulnerability Description
An authentication bypass and audience confusion vulnerability exists in the Google OAuth provider component of Google mcp-toolbox version 1.4.0. When a Google authService is initialized with mcpEnabled: true but lacks an explicitly defined audience or clientId, the ValidateMCPAuth pipeline for opaque tokens skips audience validation entirely. As a result, the toolbox will accept any valid Google OAuth access token—even those minted for unrelated ecosystem applications—granting unauthorized clients access to protected tools and data backends.
CVSS Information
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:U
Vulnerability Type
认证机制不恰当
Vulnerability Title
Google MCP Toolbox for Databases 授权问题漏洞
Vulnerability Description
Google MCP Toolbox for Databases是美国Google公司的数据库管理工具。 Google MCP Toolbox for Databases 1.4.0版本存在授权问题漏洞,该漏洞源于Google OAuth provider组件中authService初始化时未明确定义audience或clientId,导致ValidateMCPAuth管道跳过audience验证,可能接受任意有效的Google OAuth访问令牌,导致未经授权的客户端访问受保护工具和数据后端。
CVSS Information
N/A
Vulnerability Type
N/A