VDB
GO-2026-4569
GO-2026-4569
PUBLISHED
MCP Go SDK Vulnerable to Improper Handling of Case Sensitivity in github.com/modelcontextprotocol/go-sdk
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| wolfi | osv-scanner | 0, 0, 0 |
| wolfi | opencost | 0, 0, 0 |
| chainguard | gitlab-workhorse-ce-18.9 | 0, 0 |
| chainguard | ferretdb | 0, 0 |
| chainguard | osv-scanner | 0, 0, 0 |
| chainguard | gitlab-workhorse-ce-fips-18.7 | 0, 0 |
| chainguard | flux-operator-fips | 0, 0 |
| github.com | modelcontextprotocol/go-sdk | 0, 0 |
| chainguard | datadog-agent-7.76 | 0, 0 |
| chainguard | gitlab-workhorse-ce-18.8 | 0, 0 |
| chainguard | flux-operator | 0, 0 |
| wolfi | gptscript | 0, 0, 0 |
| chainguard | jaeger-2 | 0, 0, 0 |
| chainguard | jaeger-2-fips | 0, 0, 0 |
| wolfi | github-mcp-server | 0, 0, 0 |
| chainguard | gptscript | 0, 0 |
| wolfi | jaeger-2 | 0, 0, 0 |
| wolfi | datadog-agent-7.76 | 0, 0, 0 |
| chainguard | opencost-fips | 0, 0, 0 |
| chainguard | gitlab-workhorse-ce-18.7 | 0, 0 |
…and 6 more
Timeline
- Mar 10, 2026 CVE Published
- Mar 23, 2026 CVE Updated
- May 1, 2026 Security Advisory