Unrated severityNVD Advisory· Published Jul 9, 2026· Updated Jul 10, 2026
@arikusi/deepseek-mcp-server has an Authorization Bypass Through User-Controlled Key
CVE-2026-55604
Description
DeepSeek MCP Server is an MCP server for DeepSeek V4. Starting in version 1.4.2 and prior to version 1.7.0, the process-global SessionStore accepts caller-supplied session_id values without binding them to any authenticated principal or transport session. An attacker can enumerate active session IDs via deepseek_sessions, then reuse a victim-controlled session_id in deepseek_chat to retrieve and continue the victim's conversation context. Version 1.7.0 contains a patch.
Affected products
1- Range: 1.4.2 <= v < 1.7.0
Patches
Vulnerability mechanics
References
2- github.com/arikusi/deepseek-mcp-server/releases/tag/v1.7.0mitrex_refsource_MISC
- github.com/arikusi/deepseek-mcp-server/security/advisories/GHSA-fh3r-g96v-f578mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.