0.15.0
7 months ago
8 days ago
Known vulnerabilities in the @modelcontextprotocol/inspector package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
@modelcontextprotocol/inspector is a Model Context Protocol inspector Affected versions of this package are vulnerable to Missing Authentication for Critical Function due to a lack of authentication between the client and proxy, an attacker can send unauthenticated requests to the system. This allows them to execute arbitrary commands remotely, leading to a complete compromise of the application. How to fix Missing Authentication for Critical Function? Upgrade | <0.14.1 |