CVE-2025-11287 | samanhappy MCPHub up to 0.9.10 sseService.ts handleSseConnectionfunction improper authentication
A vulnerability was found in samanhappy MCPHub up to 0.9.10 and classified as critical. This vulnerability affects the function handleSseConnectionfunction of the file src/services/sseService.ts. Such manipulation leads to improper authentication.
This vulnerability is traded as CVE-2025-11287. The attack may be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More