Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-g2jx-37x6-6438
  • PyPI/arcade-mcp-server
arcade-mcp-server Has Default Hardcoded Worker Secret That Allows Full Unauthorized Access to All HTTP MCP Worker Endpoints 02 Dec 2025
  • Fix available
  • Severity - 6.5 (Medium)