{"id":"CVE-2025-9611","aliases":["GHSA-6fg3-hvw7-2fwq","GHSA-8rgw-6xp9-2fg3"],"url":"https://o3.security/vulnerability/CVE-2025-9611","summary":"Microsoft Playwright MCP Server < 0.0.40 DNS Rebinding via Missing Origin Header Validation","details":"Microsoft Playwright MCP Server versions prior to 0.0.40 fails to validate the Origin header on incoming connections. This allows an attacker to perform a DNS rebinding attack via a victim’s web browser and send unauthorized requests to a locally running MCP server, resulting in unintended invocation of MCP tool endpoints.","published":"2026-01-07T04:24:13.705Z","modified":"2026-08-12T03:51:27.714352939Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"npm","name":"@playwright/mcp","fixedVersion":"0.0.40"}],"fix":{"url":"https://github.com/microsoft/playwright/commit/1313fbd","label":"microsoft/playwright@1313fbd"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/9xxx/CVE-2025-9611.json"},{"type":"ADVISORY","url":"https://github.com/JLLeitschuh/security-research/security/advisories/GHSA-8rgw-6xp9-2fg3"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-9611"},{"type":"ADVISORY","url":"https://www.vulncheck.com/advisories/microsoft-playwright-mcp-server-dns-rebinding-via-missing-origin-header-validation"},{"type":"FIX","url":"https://github.com/microsoft/playwright/commit/1313fbd"},{"type":"PACKAGE","url":"https://github.com/microsoft/playwright"},{"type":"WEB","url":"https://github.com/microsoft/playwright-mcp/issues/1206"},{"type":"PACKAGE","url":"https://github.com/microsoft/playwright-mcp"},{"type":"WEB","url":"https://msrc.microsoft.com/report/vulnerability/VULN-164412"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-12T03:51:27.714352939Z"}}