MCPHub is treating some endpoints as trusted when they are not. In versions below 0.11.0, missing authentication middleware lets an unauthenticated user perform actions as other users and inherit their privileges.
CERT Polska says the flaw is CVE-2025-13822 and affects MCPHub below 0.11.0. The issue is an authentication bypass, not credential theft, so the danger is direct privilege abuse on exposed endpoints.
The risk persists anywhere MCPHub is deployed with those endpoints reachable. Fixing the version closes the gap, but any action already taken under another user’s identity still needs review.