Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
Astro vulnerable to reflected XSS via the server islands feature
Wrangler affected by OS Command Injection in `wrangler pages deploy`
Astros's duplicate trailing slash feature leads to an open redirection security issue
Astro's middleware authentication checks based on url.pathname can be bypassed via url encoded values
Cloudflare has SSRF via redirect following through its image-binding-transform endpoint (incomplete fix for GHSA-qpr4)
[](https://m8ven.ai/mcp/fiberplane-fp-docs-622kqp)