Skip to content

v3.4.6: Trust, but Proxy

Latest

Choose a tag to compare

@jlowin jlowin released this 05 Aug 14:53
c587bdd

FastMCP 3.4.6 backports trusted-proxy support for SSRF-protected OAuth metadata and JWKS fetches. Deployments can now route these requests through a mandated corporate proxy while preserving custom CA certificates; FastMCP refuses the fetch when no proxy is configured instead of risking an unprotected direct request.

What's Changed

Fixes 馃悶

Docs 馃摎

Full Changelog: v3.4.5...v3.4.6