VYPR

MCP Server

by Apache

Source repositories

CVEs (1)

  • CVE-2025-66336HigJun 22, 2026
    risk 0.46cvss 8.1epss 0.01

    Apache Doris MCP Server contains a SQL injection vulnerability in a metadata query path. A user-controlled database name is directly interpolated into a SQL query, and the query is executed without passing the caller's authorization context. This may allow an authenticated…