{"id":"CVE-2025-9611","aliases":["GHSA-6fg3-hvw7-2fwq","GHSA-8rgw-6xp9-2fg3"],"url":"https://o3.security/vulnerability/CVE-2025-9611","summary":"Microsoft Playwright MCP Server < 0.0.40 DNS Rebinding via Missing Origin Header Validation","details":"Microsoft Playwright MCP Server versions prior to 0.0.40 fails to validate the Origin header on incoming connections. This allows an attacker to perform a DNS rebinding attack via a victim’s web browser and send unauthorized requests to a locally running MCP server, resulting in unintended invocation of MCP tool endpoints.","published":"2026-01-07T04:24:13.705Z","modified":"2026-07-16T03:31:14.056237721Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"npm","name":"@playwright/mcp","fixedVersion":"0.0.40"}],"fix":{"url":"https://github.com/microsoft/playwright/commit/1313fbd","label":"microsoft/playwright@1313fbd"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/9xxx/CVE-2025-9611.json"},{"type":"ADVISORY","url":"https://github.com/JLLeitschuh/security-research/security/advisories/GHSA-8rgw-6xp9-2fg3"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-9611"},{"type":"ADVISORY","url":"https://www.vulncheck.com/advisories/microsoft-playwright-mcp-server-dns-rebinding-via-missing-origin-header-validation"},{"type":"FIX","url":"https://github.com/microsoft/playwright/commit/1313fbd"},{"type":"PACKAGE","url":"https://github.com/microsoft/playwright"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-16T03:31:14.056237721Z"}}