MCP servers with a critical advisory

Servers carrying at least one published advisory rated CRITICAL that still applies to the version they ship. Advisories the feed proved inapplicable to the shipped version are excluded, so this is not simply “ever mentioned in a CVE”. Severity is the publisher’s rating, carried through unchanged.

45 servers tracked browse the full catalogue →
MIK-HEAL

SyncPoint prevents AI coding agents from drifting out of sync during collaborative development.

stdio D 96t
sooperset

MCP server for Atlassian tools (Confluence, Jira)

stdio E 96t
IBM

An AI Gateway, registry, and proxy that sits in front of any MCP, A2A, or REST/gRPC APIs, exposing a unified endpoint with centralized discovery, guardrails and management. Optimizes Agent & Tool calling, and supports plugins.

stdio E 61t
pipeboard-co

Meta Ads (Facebook/Instagram) MCP server for Claude, ChatGPT, Perplexity & Cursor — the Meta node of Pipeboard’s 5-platform family (+ Google, TikTok, Snap, Reddit). Hosted remote MCP, badged Meta Business Partner, free plan — no self-hosting required.

stdio D 42t
electerm

📻Free and open-sourced terminal/ssh/sftp/ftp/telnet/serialport/RDP/VNC/Spice client(Linux, Mac, Windows, Android, HarmonyOS, iOS)

stdio E 40t
sonirico

Give hands to AI. MCP server to run shell commands securely, auditably, and on demand.

stdio C 29t
ThinkInAIXYZ

🐬DeepChat - A smart assistant that connects powerful AI to your personal world

stdio E 22t
ondata

MCP server for querying CKAN open data portals (package search, DataStore SQL, organizations, groups, tags)

stdio D 20t
grisuno

LazyOwn RedTeam/APT Framework is the first RedTeam Framework with an AI-powered C&C, featuring rootkits to conceal campaigns, undetectable malleable implants compatible with Windows/Linux/Mac OSX, and self-configuring backdoors. With its Web interface and powerful Console Client, it is the best combination for your Autonomous RedTeam/APT campaigns.

stdio E 12t
flipped-aurora

🚀Vite+Vue3+Gin拥有AI辅助的基础开发平台,企业级业务AI+开发解决方案,内置mcp辅助服务,内置skills管理,支持TS和JS混用。它集成了JWT鉴权、权限管理、动态路由、显隐可控组件、分页封装、多点登录拦截、资源权限、上传下载、代码生成器、表单生成器和可配置的导入导出等开发必备功能。

D 11t
github leshchenko1979/fast-mcp-telegram verified — a relayed third-party claim (registry/vendor), not the observatory's own endorsement
leshchenko1979

Telegram MCP gateway for AI agents: 8 tools, multi-tenant HTTP/stdio, MTProto

stdio C 8t
AstrBotDevs

AI Agent Assistant & development framework that integrates lots of IM platforms, LLMs, plugins and AI feature, and can be your openclaw alternative. ✨

stdio E 5t
NordenSoft

NOA — the Agent Action Receipt. Open governance layer for AI agents: gate risky actions before they run, emit a tamper-evident receipt anyone can verify offline. Early access · Apache-2.0.

stdio D 3t
designcomputer

A Model Context Protocol (MCP) server that enables secure interaction with MySQL databases

stdio D 3t
julien040

One SQL interface for 60+ tools (e.g., GitHub, Notion, Airtable). Plug into any LLM through MCP.

D 3t
opena2a-org

Metasploit for AI agents: scan, attack, and fix AI agents and MCP servers. Open source security toolkit.

stdio E 3t
openchoreo

OpenChoreo is an internal developer platform for Kubernetes

C 3t
QWED-AI

Deterministic verification gateway for MCP — risk-gated Python execution in a restricted environment, math/logic/code/SQL verification engines, and skill supply-chain provenance guard

stdio C 2t
Jovancoding

Traffic light for AI Agents and TypeScript/Node multi-agent orchestrator with shared state, guardrails, and adapters for 32 AI frameworks

stdio E 1t
duty1g

x64dbg-MCP Server is a native MCP (Model Context Protocol) plugin for x64dbg that exposes the debugger's full functionality over HTTP. Connect any MCP-compatible AI assistant and control x64dbg programmatically: set breakpoints, step through code, read memory, dump registers, and more. Built with Zig — zero dependencies, single-binary output, cros

http C 1t