rmcp
The official Rust SDK for the Model Context Protocol
Activity
- Latest release
- 3d ago
- Total releases
- 64
- Cadence
- ~6 days
- Last 12 months
- 44
Reach
- Downloads
- 21.1M
- Stars
- 3.9k
Details
- License
- Apache-2.0
- First release
- Mar 16, 2025
| Version | Released | |
|---|---|---|
3.3.0
minor
|
3.3.0
minor
Dependencies (46)
+ 38 more
Changelog
Compare changes
|
|
3.2.0
minor
|
3.2.0
minor
Dependencies (46)
+ 38 more
Changelog
Compare changes
|
|
3.1.4
patch
|
3.1.4
patch
Dependencies (46)
+ 38 more
Changelog
Compare changes
|
|
3.1.3
patch
|
3.1.3
patch
Dependencies (45)
+ 37 more
Changelog
Compare changes
|
|
3.1.2
patch
|
3.1.2
patch
Dependencies (44)
+ 36 more
Changelog
Compare changes
|
|
3.1.1
patch
|
3.1.1
patch
Dependencies (44)
+ 36 more
Changelog
Compare changes
|
|
3.1.0
minor
|
3.1.0
minor
Dependencies (44)
+ 36 more
Changelog
Compare changes
|
|
3.0.1
patch
|
3.0.1
patch
Dependencies (44)
+ 36 more
Changelog
Compare changes
|
|
3.0.0
major
|
3.0.0
major
Dependencies (44)
+ 36 more
Changelog
Compare changes
|
|
3.0.0-beta.5
pre
|
3.0.0-beta.5
pre
Dependencies (44)
+ 36 more
Changelog
Compare changes
|
|
3.0.0-beta.4
pre
|
3.0.0-beta.4
pre
Dependencies (44)
+ 36 more
Changelog
Compare changes
|
|
3.0.0-beta.3
pre
|
3.0.0-beta.3
pre
Dependencies (44)
+ 36 more
Changelog
Compare changes
|
|
3.0.0-beta.2
pre
|
3.0.0-beta.2
pre
Dependencies (44)
+ 36 more
Changelog
Compare changes
|
|
3.0.0-beta.1
pre
|
3.0.0-beta.1
pre
Dependencies (44)
+ 36 more
Changelog
Compare changes
|
|
2.2.0
minor
|
2.2.0
minor
Dependencies (42)
+ 34 more
Changelog
Compare changes
|
|
2.1.0
minor
|
2.1.0
minor
Dependencies (42)
+ 34 more
Changelog
Compare changes
|
|
2.0.0
major
|
2.0.0
major
Dependencies (42)
+ 34 more
Changelog
Compare changes
|
|
1.8.0
minor
|
1.8.0
minor
Dependencies (41)
+ 33 more
Changelog
Compare changes
|
|
1.7.0
minor
|
1.7.0
minor
Dependencies (41)
+ 33 more
Changelog
Compare changes
|
|
1.6.0
minor
|
1.6.0
minor
Dependencies (41)
+ 33 more
Changelog
Compare changes
|
|
1.5.0
minor
|
1.5.0
minor
Dependencies (41)
+ 33 more
Changelog
Compare changes
|
|
1.4.0
minor
|
1.4.0
minor
Dependencies (41)
+ 33 more
Changelog
Compare changes
|
|
1.3.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
1.3.0
minor
Dependencies (40)
+ 32 more
Changelog
Compare changes
|
|
1.2.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
1.2.0
minor
Dependencies (35)
+ 27 more
Changelog
Compare changes
|
|
1.1.1
patch
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
1.1.1
patch
Dependencies (35)
+ 27 more
Changelog
Compare changes
|
|
1.1.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
1.1.0
minor
Dependencies (35)
+ 27 more
Changelog
Compare changes
|
|
1.0.0
major
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
1.0.0
major
Dependencies (33)
+ 25 more
Changelog
Compare changes
|
|
1.0.0-alpha
pre
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
1.0.0-alpha
pre
Dependencies (33)
+ 25 more
Changelog
Compare changes
|
|
0.17.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.17.0
minor
Dependencies (33)
+ 25 more
Changelog
Compare changes
|
|
0.16.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.16.0
minor
Dependencies (33)
+ 25 more
Changelog
Compare changes
|
|
0.15.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.15.0
minor
Dependencies (33)
+ 25 more
Changelog
Compare changes
|
|
0.14.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.14.0
minor
Dependencies (33)
+ 25 more
Changelog
Compare changes
|
|
0.13.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.13.0
minor
Dependencies (33)
+ 25 more
Changelog
Compare changes
|
|
0.12.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.12.0
minor
Dependencies (33)
+ 25 more
Changelog
Compare changes
|
|
0.11.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.11.0
minor
Dependencies (33)
+ 25 more
Changelog
Compare changes
|
|
0.10.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.10.0
minor
Dependencies (33)
+ 25 more
Changelog
Compare changes
|
|
0.9.1
patch
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.9.1
patch
Dependencies (33)
+ 25 more
Changelog
Compare changes
|
|
0.9.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.9.0
minor
Dependencies (33)
+ 25 more
Changelog
Compare changes
|
|
0.8.5
patch
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.8.5
patch
Dependencies (32)
+ 24 more
Changelog
Compare changes
|
|
0.8.4
patch
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.8.4
patch
Dependencies (32)
+ 24 more
Changelog
Compare changes
|
|
0.8.3
patch
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.8.3
patch
Dependencies (32)
+ 24 more
Changelog
Compare changes
|
|
0.8.2
patch
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.8.2
patch
Dependencies (32)
+ 24 more
Changelog
Compare changes
|
|
0.8.1
patch
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.8.1
patch
Dependencies (32)
+ 24 more
Changelog
Compare changes
|
|
0.8.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.8.0
minor
Dependencies (32)
+ 24 more
Changelog
Compare changes
|
|
0.7.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.7.0
minor
Dependencies (32)
+ 24 more
Changelog
Compare changes
|
|
0.6.4
patch
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.6.4
patch
Dependencies (32)
+ 24 more
Changelog
Compare changes
|
|
0.6.3
patch
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.6.3
patch
Dependencies (32)
+ 24 more
Changelog
Compare changes
|
|
0.6.2
patch
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.6.2
patch
Dependencies (32)
+ 24 more
Changelog
Compare changes
|
|
0.6.1
patch
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.6.1
patch
Dependencies (32)
+ 24 more
Changelog
Compare changes
|
|
0.6.0
minor
1 CVE
CVE-2026-42559
GHSA-89vp-x53w-74fx
GHSA-fvh2-gm75-j4j7
RUSTSEC-2026-0140
RUSTSEC-2026-0189
May 06, 2026
rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
SummaryPrior to version 1.4.0, the ImpactAn attacker who convinces a victim to visit a malicious page can:
Because MCP servers frequently run with the user's privileges and expose developer tooling (filesystems, shells, browser control, language servers, etc.), the practical impact can extend to arbitrary code execution on the victim's machine. Affected Versions
Patched Versions
PatchFixed in PR #764 (commit
This fix validates the Workarounds for Unpatched Users
Resources
Related advisories (same class of vulnerability)
Fixed in
1.4.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
0.6.0
minor
Dependencies (32)
+ 24 more
Changelog
Compare changes
|