Skip to content

🚨 Security: Critical or high vulnerabilities in mcp-server-git container #1043

Description

@github-actions

🚨 Security Scan Alert

A periodic security scan found fixable critical or high severity vulnerabilities in the container image. Findings at this level also block publishing in the build workflow.

  • Image: ghcr.io/stacklok/dockyard/uvx/mcp-server-git:2026.8.18
  • Critical vulnerabilities: 1
  • High vulnerabilities: 7

Details

See the Security tab for full details.

Critical Vulnerabilities

  • GHSA-ffc3-869f-jxw9 in pyjwt@2.13.0: PyJWT: Asymmetric-PEM detection bypass: whitespace/line-ending-mutated public keys skip the HS/asymmetric confusion guard

High Vulnerabilities

  • GHSA-g5vv-9gxw-82hx in gitpython@3.1.59: GitPython: Denial of Service via catastrophic backtracking (ReDoS) in Actor.name_email_regex — commit author/committer field parsing
  • GHSA-239g-whfq-7xj9 in gitpython@3.1.59: GitPython: Repository content can impersonate the git directory, leading to arbitrary code execution
  • GHSA-r6x4-923q-g947 in pyjwt@2.13.0: PyJWT BOM Bypass
  • GHSA-w2cx-738m-mc7w in pyjwt@2.13.0: PyJWT accepts public JWK containers as HMAC secrets
  • GHSA-9j54-fg26-wv3r in pyjwt@2.13.0: PyJWT: PyJWK accepts empty HMAC keys, bypassing PyJWT's empty-key validation

... and 2 more. See Security tab for complete list.


Automated security scan from periodic-security-scan workflow

Activity

  1. cc-bb-aa commented on Oct 5, 2026

    @cc-bb-aa

    Best fix is rebuilding the image without the vulnerable packages. As a runtime backstop, you can wrap the MCP server with a gate that enforces an allowlist per tool call and writes an immutable audit log. It is not a patch, but it narrows the window. Our docs show how to set it up: https://shield-agent.com/docs

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions