Incorrect Authorization Affecting agent-mcp-gateway package, versions [,0.2.0)


Severity

Recommended
0.0
medium
0
10

CVSS assessment by Snyk's Security Team. Learn more

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications

Snyk Learn

Learn about Incorrect Authorization vulnerabilities in an interactive lesson.

Start learning
  • Snyk IDSNYK-PYTHON-AGENTMCPGATEWAY-14157478
  • published5 Dec 2025
  • disclosed2 Dec 2025
  • creditUnknown

Introduced: 2 Dec 2025

CVE NOT AVAILABLE CWE-863  (opens in a new tab)

How to fix?

Upgrade agent-mcp-gateway to version 0.2.0 or higher.

Overview

agent-mcp-gateway is an An MCP gateway that aggregates your existing MCP servers and lets you define which servers and individual tools each agent or subagent can access. Solves Claude Code's MCP context window waste where all tool definitions load upfront instead of being discovered when actually needed.

Affected versions of this package are vulnerable to Incorrect Authorization due to improper rule evaluation in the policy engine. The authorization logic fails to prioritize deny rules over allow rules, allowing explicit allow permissions to override broader wildcard deny policies. An attacker with access to policy-controlled endpoints can exploit this behavior to gain unauthorized access to restricted resources.

References

CVSS Base Scores

version 4.0
version 3.1