Mcp server
This hub aggregates every CVE we track for Mcp server, a product in the devtools ci space. Use it to gauge the current risk picture and drill into individual advisories.
6
CVEs tracked
0
Critical
4
High
0
In CISA KEV
Severity distribution
HIGH4MEDIUM2
Monthly trend
0
0
0
0
0
0
0
0
0
0
2
0
1
1
0
0
0
0
0
0
0
1
1
0
2024-092026-08
Latest CVEs
The 6 most recently published vulnerabilities affecting Mcp server.
- CVE-2026-47427GitHub MCP Server: Nil Pointer Dereference DoS in completion/complete Handler7.5
- CVE-2026-57300A missing permission check in Jenkins MCP Server Plugin 0.177.v629fdb_2557fe and earlier allows attackers with Item/Read permission to read the Pipeline replay scripts of jobs they can access.4.3
- CVE-2025-64132Jenkins MCP Server Plugin 0.84.v50ca_24ef83f2 and earlier does not perform permission checks in multiple MCP tools, allowing attackers to trigger builds and obtain information about job and cloud c...5.4
- CVE-2025-56405An issue was discovered in litmusautomation litmus-mcp-server thru 0.0.1 allowing unauthorized attackers to control the target's MCP service through the SSE protocol.7.5
- CVE-2025-53355mcp-server-kubernetes vulnerable to command injection in several tools7.5
- CVE-2025-53107@cyanheads/git-mcp-server vulnerable to command injection in several tools7.5
Product normalization is registry-driven with AI assist and human review. How it works