{"api_version":"v1","generated_at":"2026-10-06T23:55:00+00:00","product":{"cve_count":6,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-modelcontextprotocol-servers-d15817d1557c","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/servers","name":"servers","next_cursor":null,"observations":[{"affected":"< 2026.1.14","affected_versions_present":true,"cve_id":"CVE-2026-27735","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27735","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T17:04:59.103Z","patch_url":"https://github.com/modelcontextprotocol/servers/security/advisories/GHSA-vjqx-cfc4-9h6v","primary_source":"","published":"2026-02-25T23:45:52.077Z"},{"affected":"servers: < 2025.12.17","affected_versions_present":true,"cve_id":"CVE-2025-68145","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-68145","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-12-18T15:06:54.784Z","patch_url":"","primary_source":"","published":"2025-12-17T22:12:45.410Z"},{"affected":"< 2025.12.17","affected_versions_present":true,"cve_id":"CVE-2025-68144","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-68144","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-12-18T15:07:03.402Z","patch_url":"","primary_source":"","published":"2025-12-17T22:10:56.086Z"},{"affected":"servers: < 2025.9.25","affected_versions_present":true,"cve_id":"CVE-2025-68143","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-68143","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-12-18T15:07:15.061Z","patch_url":"https://github.com/modelcontextprotocol/servers/commit/eac56e7bcde48fb64d5a973924d05d69a7d876e6","primary_source":"","published":"2025-12-17T22:09:43.159Z"},{"affected":"< 0.6.4; < 2025.7.01","affected_versions_present":true,"cve_id":"CVE-2025-53109","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-53109","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-07-02T14:50:18.562Z","patch_url":"","primary_source":"","published":"2025-07-02T14:30:57.647Z"},{"affected":"< 0.6.4; < 2025.7.01","affected_versions_present":true,"cve_id":"CVE-2025-53110","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-53110","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-07-02T15:13:59.600Z","patch_url":"","primary_source":"","published":"2025-07-02T14:30:39.947Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"modelcontextprotocol"}}
