-
Notifications
You must be signed in to change notification settings - Fork 2k
Closed
Description
Hi there,
Sorry forgot to revert here, since Monday we fixed the security issue flagged last week in mcpadapt allowing remote SSE MCP servers to execute code on users local environment. This is now resolved from version of mcpadapt 0.0.19 and above.
mcpadapt will now directly forward the input json schema (we just make sure there is no jsonref or things like that) from the mcp server tools to the prompt. There is no more intermediate python representation that get executed which was the source of the security issue above.
for reference: grll/mcpadapt#21
Metadata
Metadata
Assignees
Labels
No labels