MCP Server Unauthenticated Access

info Web App Scanning Plugin ID 114791

Synopsis

MCP Server Unauthenticated Access

Description

This is an informational notice that the scanner was able to detect a Model Context Protocol (MCP) server available without authentication on the target server.

Solution

Ensure that the unauthenticated access avability to this MCP server is expected and does not expose sensitive information.

See Also

https://modelcontextprotocol.io

Plugin Details

Severity: Info

ID: 114791

Type: remote

Published: 5/22/2025

Updated: 5/22/2025

Scan Template: basic, full, pci, scan