SCA: security update for github.com/docker/mcp-gateway (GHSA-46gc-mwh4-cc5r)

high Tenable Self-Hosted Container Security Plugin ID 436201

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- MCP Gateway allows easy and secure running and deployment of MCP servers. In versions 0.27.0 and earlier,
when MCP Gateway runs in sse or streaming transport mode, it is vulnerable to DNS rebinding. An attacker
who can get a victim to visit a malicious website or be served a malicious advertisement can perform
browser-based exploitation of MCP servers executing behind the gateway, including manipulating tools or
other features exposed by those MCP servers. MCP Gateway is not affected when running in the default stdio
mode, which does not listen on network ports. Version 0.28.0 fixes this issue. (CVE-2025-64443)

See Also

https://github.com/advisories/GHSA-46gc-mwh4-cc5r

Plugin Details

Severity: High

ID: 436201

Version: Revision 1.10

Type: Local

Family: SCA Checks

Published: 12/3/2025

Updated: 7/2/2026

Supported Sensors: Tenable Cloud Security, Tenable Self-Hosted Container Security

Risk Information

VPR

Risk Factor: Medium

Score: 5

Percentile: 94.39

Vendor

Vendor Severity: High

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS Score Source: CVE-2025-64443

CVSS v3

Risk Factor: Critical

Base Score: 9.6

Temporal Score: 8.3

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

CVSS v4

Risk Factor: High

Base Score: 7.3

Threat Score: 4.5

Threat Vector: CVSS:4.0/E:U

Vector: CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:L/VI:H/VA:N/SC:H/SI:H/SA:H

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 12/3/2025

Vulnerability Publication Date: 12/3/2025

Reference Information

CVE: CVE-2025-64443

cwe: CWE-749