Github.com/obot-platform/obot
This hub aggregates every CVE we track for Github.com/obot-platform/obot, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
4
CVEs tracked
0
Critical
0
High
0
In CISA KEV
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
0
0
3
2024-102026-09
Latest CVEs
The 4 most recently published vulnerabilities affecting Github.com/obot-platform/obot.
- GHSA-jgh3-fggc-mcpmObot: Server-Side Request Forgery via remote MCP server URL
- GHSA-pr6h-vr44-xq8jObot: MCP Registry API readable without authentication
- GHSA-xwmw-prc4-v3crObot: OAuth Dynamic Client Registration Enables API Token Theft via Audience Confusion
- GHSA-vw82-7fv8-r6gpObot has an authorization bypass in /mcp-connect/{id} that allows any authenticated user to use any registered MCP server
Product normalization is registry-driven with AI assist and human review. How it works