Affected by GO-2026-4770
and 1 other vulnerabilities
GO-2026-4770: Improper handling of null Unicode character when parsing JSON in github.com/modelcontextprotocol/go-sdk
GO-2026-4773: Cross-Site Tool Execution for HTTP Servers without Authorizatrion in github.com/modelcontextprotocol/go-sdk
command
Version:
v1.4.0
Opens a new window with list of versions in this module.
Published: Feb 27, 2026
License: Apache-2.0, CC-BY-4.0, MIT
Opens a new window with license information.
Imports: 7
Opens a new window with list of imports.
Imported by: 0
Opens a new window with list of known importers.
Click to show internal directories.
Click to hide internal directories.