CVE-2026-14471 - Authenticated SQL injection in the metrics-service retention policy subsystem of mcp-gateway-registry
AWS ยท 2026-07-06
Actions
Technical Details
| Affected Versions | 1.0.3, 1.0.12 |
|---|---|
| Regions | all |
| CVE IDs | CVE-2026-14471 |
| Migration Required | Yes |
| Cost Impact | Neutral |
| IaC Impact | High |
What This Means
For DevOps Teams
Update mcp-gateway-registry to version 1.0.13 to address the authenticated SQL injection vulnerability (CVE-2026-14471) and ensure the security of your metrics database.
For Platform Teams
Deploy the latest mcp-gateway-registry version 1.0.13 to incorporate the security fixes and maintain the integrity of your AI agent infrastructure.
For Executives
Implement the upgrade to mcp-gateway-registry version 1.0.13 to mitigate the risk of authenticated SQL injection and protect sensitive data from unauthorized access or modification.