CVE Explorer
CVE-2026-9680
Improper exposure of the MCP server in alibabacloud-rds-openapi-mcp-server allows remote attackers to invoke exposed MCP tools via network access to an MCP endpoint listening on all network interfaces by default.
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"defaultStatus":"unaffected","product":"Alibaba Cloud RDS OpenAPI MCP Server","vendor":"Alibaba","versions":[{"lessThanOrEqual":"3.1.2","status":"affected","version":"1.8.0","versionType":"custom"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:2a01265a011d0563529257b4ee80587fdf0d4952217913576cd1afc5688906c4 · sha256:87983d66ac346b8a… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"attackComplexity":"LOW","attackVector":"NETWORK","availabilityImpact":"NONE","baseScore":5.8,"baseSeverity":"MEDIUM","confidentialityImpact":"LOW","integrityImpact":"NONE","privilegesRequired":"NONE","scope":"CHANGED","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N","version":"3.1"},"metric_type":"cvssV3_1"}
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:2a01265a011d0563529257b4ee80587fdf0d4952217913576cd1afc5688906c4 · sha256:87983d66ac346b8a… · /containers/cna/metrics/0/cvssV3_1
CWE assertions
1 source assertion{"cweId":"CWE-1188","description":"CWE-1188 Initialization of a resource with an insecure default","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:2a01265a011d0563529257b4ee80587fdf0d4952217913576cd1afc5688906c4 · sha256:87983d66ac346b8a… · /containers/cna/problemTypes/0/descriptions/0
Source references
1 source assertion{"url":"https://github.com/aliyun/alibabacloud-rds-openapi-mcp-server"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:2a01265a011d0563529257b4ee80587fdf0d4952217913576cd1afc5688906c4 · sha256:87983d66ac346b8a… · /containers/cna/references/0
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.