encore.dev is vulnerable to Cross-Site Request Forgery (CSRF)
90
Critical Risk
The Encore CLI daemon binds several unauthenticated HTTP servers to loopback addresses, and after they were moved to deterministic ports any website a developer visits can drive them cross-origin from the browser. Affected servers include the MCP introspection server exposing application source, API metadata, databases, logs and traces, the local development dashboard serving captured traces and reverse-proxied API calls, the bucket emulator, and the runtime/trace ingest and pprof endpoints. An Origin header check alone is insufficient because browsers omit Origin on cross-site sub-resource loads, allowing data exfiltration and forged local API calls. The fix adds a shared origin gate that rejects cross-site requests and only allows loopback or non-browser callers.
You are affected if you are using a version that falls within the vulnerable range and you run the Encore CLI daemon (for example via encore run) while browsing untrusted sites in the same browser profile.
encore.dev is vulnerable to Cross-Site Request Forgery (CSRF) in versions 0.0.1 - 1.57.12.
Upgrade the encore.dev library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant