AUTO-PUBLISHED/pypi//MAL-2026-4774
vulndify-mcp-server@0.3.0
A minimal MCP server demo exposing a hello tool.
→ sends tohttp://10.37.1.177/v1/chat-messages
base64-decodechild-process-spawncurl-pipe-bash-unverifiedpy-requests-post
→ No suspicious destination, no remote-exec shape — extraction empty.
weekly
312
/wk
llm verdict
benign
