MCP Scanner
ScanLeaderboardDocsSign in
Home/tavily-ai/tavily-mcp/Results
98A

tavily-mcp

tavily-ai/tavily-mcp

5 files · 1 findings

Share GitHub SARIF JSON
1 medium
Tool Poisoningclean
Command Injectionclean
Path Traversalclean
SSRFclean
Credential Theftclean
Excessive Permissionsclean
Missing Authclean
Supply Chain
Supply Chain1

Typosquatting-susceptible dependency name

medium

Package names that are common misspellings of popular packages may be typosquatting attacks.

package.json:51
"axios": "^1.6.7",
How to fix

Verify package names against the official registry. Use lockfiles and integrity hashes.

1 issue
Rug Pullclean