discovered 03 Aug 2026
MCPScan
→ View on GitHubMCPScan is an offensive security auditing tool specifically designed for MCP servers to identify vulnerabilities and misconfigurations. It conducts comprehensive checks across eight categories, including tool poisoning, credential leakage, remote code execution, and supply chain issues, allowing developers to mitigate security risks in AI-connected environments effectively. Notable features include detailed vulnerability reporting, CVE references for known issues, and the ability to detect common attack vectors and exposed sensitive data.