Vulnerability library
Security checkSeptember 26, 2025

MCP Inspector is Vulnerable to Potential Command Execution via XSS When Connecting to an Untrusted MCP Server

Understand the exposure, see the recommended fix, and check whether your own website has related weaknesses.

Check your website

Find this and other vulnerabilities with a free scan.

Your scan runs on your computer. No account required.

Description

An XSS flaw exists in the MCP Inspector local development tool when it renders a redirect URL returned by a remote MCP server. If the Inspector connects to an untrusted server, a crafted redirect can inject script into the Inspector context and, via the built-in proxy, be leveraged to trigger arbitrary command execution on the developer machine.

Recommendation

Update the @modelcontextprotocol/inspector package to the latest compatible version. Followings are version details:

  • Affected version(s): < 0.16.6
  • Patched version(s): 0.16.6

References

Could your website be exposed too?

SmartScanner can check your website for MCP Inspector is Vulnerable to Potential Command Execution via XSS When Connecting to an Untrusted MCP Server and gives you actionable findings to investigate.

Start a free scan

Related Issues

See something that needs correcting? Let us knowUpdated September 26, 2025