{"id":"CVE-2026-39313","aliases":["GHSA-353c-v8x9-v7c3"],"url":"https://o3.security/vulnerability/CVE-2026-39313","summary":"MCP-Framework: Unbounded memory allocation in readRequestBody allows denial of service via HTTP transport","details":"mcp-framework is a framework for building Model Context Protocol (MCP) servers. In versions 0.2.21 and below, the readRequestBody() function in the HTTP transport concatenates request body chunks into a string with no size limit. Although a maxMessageSize configuration value exists, it is never enforced in readRequestBody(). A remote unauthenticated attacker can crash any mcp-framework HTTP server by sending a single large POST request to /mcp, causing memory exhaustion and denial of service. This issue has been fixed in version 0.2.22.","published":"2026-04-16T21:24:27.328Z","modified":"2026-08-07T11:51:01.194644645Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"npm","name":"mcp-framework","fixedVersion":"0.2.22"}],"fix":{"url":"https://github.com/QuantGeekDev/mcp-framework/commit/f97d2bb76d6359faf10cd1fc54b4911476b62524","label":"QuantGeekDev/mcp-framework@f97d2bb"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/39xxx/CVE-2026-39313.json"},{"type":"ADVISORY","url":"https://github.com/QuantGeekDev/mcp-framework/security/advisories/GHSA-353c-v8x9-v7c3"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-39313"},{"type":"FIX","url":"https://github.com/QuantGeekDev/mcp-framework/commit/f97d2bb76d6359faf10cd1fc54b4911476b62524"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-07T11:51:01.194644645Z"}}