VYPR

Stata Mcp

by Statamcp

Source repositories

CVEs (2)

  • CVE-2026-31040CriApr 8, 2026
    risk 0.57cvss 9.8epss 0.01

    A vulnerability was identified in stata-mcp prior to v1.13.0 where insufficient validation of user-supplied Stata do-file content can lead to command execution.

  • CVE-2026-55071HigSep 21, 2026
    risk 0.48cvss 8.4epss 0.00

    MCP-for-Stata is a MCP server for integrating Stata into agent loops with a safety-first design. Prior to version 1.19.0, the ado_package_install MCP tool in stata-mcp concatenates user-controlled input directly into a Stata command string without any validation or sanitization.…