Server-side application for the Model Context Protocol inspector
94%
Total Score
100
78
91
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-632017 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. @modelcontextprotocol/inspector-server is vulnerable to Server-Side Request Forgery (SSRF) in versions 0.21.2 - 0.22.0. | 0.21.2 - 0.22.0 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
ws Version ^8.18.0 | — | — |
shx Version ^0.3.4 | — | — |
zod Version ^3.25.76 | — | — |
cors Version ^2.8.5 | — | — |
express Version ^5.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant