Mcp typescript sdk Vulnerabilities
Security vulnerability tracking for Lfprojects Mcp typescript sdk
1
0
1
0
Vulnerability Timeline
1 vulnerabilities discovered over time for Mcp typescript sdk
Severity Distribution
| Description | Vendor / Product | Exploit Status | |||
|---|---|---|---|---|---|
| CVE-2025-66414 | 7.6 | An attacker can exploit this vulnerability to send unauthorized requests to a local MCP server running on a user's machine, potentially accessing sensitive resources or tools. This can happen if the server is running without authentication on localhost and does not have DNS rebinding protection enabled, which is a risky setup that should be avoided. | lfprojectsmcp typescript sdk | Exploit Available | 4 months agoDec 2, 2025 |
About Lfprojects Mcp typescript sdk Security
This page provides comprehensive security vulnerability tracking for Lfprojects Mcp typescript sdk. Our database includes all CVEs affecting this product, updated in real-time from official sources.
Each vulnerability listing includes detailed CVSS severity analysis, exploit availability status, AI-generated explanations, and direct links to official security patches and vendor advisories.
Security Recommendations
- • Always keep Mcp typescript sdk updated to the latest version
- • Subscribe to security advisories from Lfprojects
- • Monitor this page for new vulnerabilities affecting your version
- • Prioritize patching critical and high severity issues immediately