VYPR

Figma MCP Server

by Framelink

Source repositories

CVEs (1)

  • CVE-2025-15061CriJan 23, 2026
    risk 0.64cvss 9.8epss 0.00

    Framelink Figma MCP Server fetchWithRetry Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Framelink Figma MCP Server. Authentication is not required to exploit this…