MCP server for accessing Mastra.ai documentation, changelogs, and news.
95%
Total Score
76
100
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2025-61685 @mastra/mcp-docs-server is vulnerable to Exposure of Information Through Directory Listing in versions 0.0.0 - 0.13.8. | 0.0.0 - 0.13.8 | Medium |
AIKIDO-2025-10639 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. @mastra/mcp-docs-server is vulnerable to Path Traversal in versions 0.13.17 - 0.13.20. | 0.13.17 - 0.13.20 | Medium |
AIKIDO-2025-10609 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. @mastra/mcp-docs-server is vulnerable to Path Traversal in versions 0.0.1 - 0.13.16. | 0.0.1 - 0.13.16 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
zod Version ^4.3.6 | — | — |
jsdom Version ^26.1.0 | — | — |
local-pkg Version ^1.1.2 | — | — |
@mastra/mcp Version ^1.8.0 | — | — |
@mastra/core Version 1.36.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant