CVE-2025-49596 Details
Description
The MCP inspector is a developer tool for testing and debugging MCP servers. Versions of MCP Inspector below 0.14.1 are vulnerable to remote code execution due to lack of authentication between the Inspector client and proxy, allowing unauthenticated requests to launch MCP commands over stdio. Users should immediately upgrade to version 0.14.1 or later to address these vulnerabilities.
A remote code execution vulnerability exists in MCP Inspector versions prior to 0.14.1. This issue arises from a lack of authentication between the Inspector client and proxy, allowing unauthenticated requests to execute MCP commands via standard input. The vulnerability can be exploited by sending requests to the proxy server, which can then launch commands on the local MCP processes.
Users should upgrade to MCP Inspector version 0.14.1 or later. After upgrading, ensure that the proxy server is configured to require authentication by default.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Jun 13, 2025CISA-ADP
Assessed Jun 13, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-306 | Missing Authentication for Critical Function | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| @modelcontextprotocol/inspector | All versions |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jul 9, 2025 | CVE Modified | [email protected] |
| Jun 13, 2025 | New CVE Received | [email protected] |
Volerion