@circleci/mcp-server-circleci is vulnerable to Improper Privilege Management
44
Medium Risk
The run_pipeline, rerun_workflow, and run_rollback_pipeline tools are not annotated with a destructive hint. MCP clients and hosts use that annotation to decide whether to prompt for user confirmation before running high-impact operations. Without it, a client can invoke these tools and trigger irreversible pipeline reruns or rollbacks without the elevated-risk handling it would otherwise apply. The fix adds destructive annotations to the affected tools so clients can gate them behind confirmation.
You are affected if you are using a version that falls within the vulnerable range and your MCP client relies on tool annotations to gate confirmation for destructive actions.
@circleci/mcp-server-circleci is vulnerable to Improper Privilege Management in versions 0.0.1 - 0.17.0.
Upgrade the @circleci/mcp-server-circleci library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant