VYPR

godot-mcp

by LeeSinLiang

CVEs (1)

  • CVE-2026-19044MedAug 6, 2026
    risk 0.34cvss 5.3epss

    A flaw has been found in LeeSinLiang godot-mcp 0.1.0. Affected by this vulnerability is the function executeOperation of the file src/index.ts of the component create_scene/add_node. This manipulation of the argument projectPath causes command injection. The attack needs to be…