Skip to content
HashiCorpCVE-2026-16498

The terraform-mcp-server before version 1.1.0 is vulnerable to a cross-tenant...

Critical10.0CVE-2026-16498 · Published Jul 28, 2026 · updated Jul 30, 2026

The terraform-mcp-server before version 1.1.0 is vulnerable to a cross-tenant credential reuse issue in the streamable-HTTP stateless transport mode that may allow one user's Terraform token to be used to execute tool calls on behalf of subsequent users. This vulnerability, CVE-2026-16498, is fixed in terraform-mcp-server 1.1.0.

HashiCorp advisory

Affected versions

PackageAffectedFixed in
Tooling
Product
>= 0.3.0, < 1.1.01.1.0
Details and references

More HashiCorp advisories

All HashiCorp
Advisory
HashiCorp Consul: denial of service
Medium5.3Aug 7
Consul Community Edition and Consul Enterprise 1.20.1 through 2.0.2 are...
Medium4.2Aug 7
HashiCorp Tooling: server-side request forgery
High8.6Jul 29
In consul-mcp-server
Critical10.0Jul 29
HashiCorp Tooling: server-side request forgery
High8.6Jul 28
HashiCorp Tooling: session fixation
High8.9Jul 28

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.