Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Jenn-Newton

#35990of 56,334
7.8Total CVSS
Vulnerabilities · 1
PT-2025-27616
7.8
2025-07-01
Unknown · Filesystem · CVE-2025-53109
**Name of the Vulnerable Software and Affected Versions** Model Context Protocol Servers Filesystem versions prior to 0.6.4 Model Context Protocol Servers Filesystem versions prior to 2025.7.01 **Description** An issue exists in the server-filesystem implementation of the Model Context Protocol (MCP) due to incorrect reference validation before file access. This flaw allows a remote attacker to gain unauthorized access to protected information by using symlinks (symbolic links, which are files that point to other files or directories) within allowed directories to access unintended files. **Recommendations** Update to version 0.6.4. Update to version 2025.7.01.