HIGH8.8
PYSEC-2026-2669
Azure MCP Server has Server-Side Request Forgery issue that allows authorized attacker to elevate privileges over a network
Quick fix
PYSEC-2026-2669 — msmcp-azure: upgrade to the fixed version with the command below.
pip install --upgrade 'msmcp-azure>=2.0.0b17'Details
Server-Side Request Forgery (SSRF) in Azure MCP Server allows an authorized attacker to elevate privileges over a network.
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI/msmcp-azure
Introduced in:
2.0.0b14Fixed in: 2.0.0b17Fix
pip install --upgrade 'msmcp-azure>=2.0.0b17'References
- https://nvd.nist.gov/vuln/detail/CVE-2026-26118[ADVISORY]
- https://github.com/microsoft/mcp/commit/804ff60293206c4d8e832f772097238561bf2c34[WEB]
- https://github.com/microsoft/mcp[PACKAGE]
- https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-1.0.2[WEB]
- https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-2.0.0-beta.17[WEB]
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26118[WEB]
- https://pypi.org/project/msmcp-azure[PACKAGE]
- https://github.com/advisories/GHSA-hhfx-wfvq-7g9c[ADVISORY]