Package impact
npm / @samanhappy/mcphub
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-11287 | critical | 9.8 | 9.8 | 8mo ago | MCPHub has an Improper Authorization vulnerability via its handleSseConnection function | |||
| CVE-2025-13822 | medium | 5.3 | 5.3 | 2mo ago | MCPHub has an authentication bypass |