HashiCorpCVE-2026-16498
The terraform-mcp-server before version 1.1.0 is vulnerable to a cross-tenant...
Critical10.0CVE-2026-16498 · Published Jul 28, 2026 · updated Jul 30, 2026
The terraform-mcp-server before version 1.1.0 is vulnerable to a cross-tenant credential reuse issue in the streamable-HTTP stateless transport mode that may allow one user's Terraform token to be used to execute tool calls on behalf of subsequent users. This vulnerability, CVE-2026-16498, is fixed in terraform-mcp-server 1.1.0.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| Tooling Product | >= 0.3.0, < 1.1.0 | 1.1.0 |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:L
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-488
More HashiCorp advisories
All HashiCorp| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Aug 7 | HashiCorp Consul: denial of service | Medium5.3 | 2.0.3+1 more |
| Aug 7 | Consul Community Edition and Consul Enterprise 1.20.1 through 2.0.2 are... | Medium4.2 | 2.0.3+1 more |
| Jul 29 | HashiCorp Tooling: server-side request forgery | High8.6 | 0.1.4 |
| Jul 29 | In consul-mcp-server | Critical10.0 | 0.1.4 |
| Jul 28 | HashiCorp Tooling: server-side request forgery | High8.6 | 1.1.0 |
| Jul 28 | HashiCorp Tooling: session fixation | High8.9 | 1.1.0 |