CVE-2026-34476

Server-Side Request Forgery via SW-URL Header vulnerability in Apache SkyWalking MCP. This issue affects Apache SkyWalking MCP: 0.1.0. Users are recommended to upgrade to version 0.2.0, which fixes this issue.
Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:skywalking_mcp:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-04-13 13:16

Updated : 2026-06-17 10:39


NVD link : CVE-2026-34476

Mitre link : CVE-2026-34476

CVE.ORG link : CVE-2026-34476


JSON object : View

Products Affected

apache

  • skywalking_mcp
CWE
CWE-918

Server-Side Request Forgery (SSRF)