Skip to content
fastmcpGHSA-rcfx-77hg-w2wv

FastMCP updated to MCP 1.23+ due to CVE-2025-66416

HighPublished Dec 26, 2025

GitHub advisory

Affected versions

PackageAffectedFixed in
fastmcp
PyPI
< 2.14.02.14.0
Details and references

There was a recent CVE report on MCP: https://nvd.nist.gov/vuln/detail/CVE-2025-66416. FastMCP does not use any of the affected components of the MCP SDK directly. However, FastMCP versions prior to 2.14.0 did allow MCP SDK versions <1.23 that were vulnerable to CVE-2025-66416. Users should upgrade to FastMCP 2.14.0 or later.

Severity from
GitHub (reviewed advisory)

More fastmcp advisories

All
DateAdvisory
Oct 292025FastMCP vulnerable to windows command injection in FastMCP Cursor installer via server_name
CVE-2025-62801Mediumfixed in 2.13.0
Oct 292025FastMCP vulnerable to reflected XSS in client's callback page
CVE-2025-62800Mediumfixed in 2.13.0
Oct 292025FastMCP Auth Integration Allows for Confused Deputy Account Takeover
GHSA-c2jp-c369-7pvxHighfixed in 2.13.0
Mar 16FastMCP OAuth Proxy token reuse across MCP servers
CVE-2025-69196Highfixed in 2.14.2
Mar 31FastMCP has a Command Injection vulnerability - Gemini CLI
CVE-2025-64340Medium6.7fixed in 3.2.0
Mar 31FastMCP: Missing Consent Verification in OAuth Proxy Callback Facilitates Confused Deputy Vulnerabilities
CVE-2026-27124Highfixed in 3.2.0

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.