mcp_vulnerable_testbed

triepod-ai/mcp_vulnerable_testbed

3.2

If you are the rightful owner of mcp_vulnerable_testbed and would like to certify it and/or have it hosted online, please leave a comment on the right or send an email to henry@mcphub.com.

The MCP Vulnerable Testbed is a server designed for testing the security assessment capabilities of the MCP Inspector tool, containing intentional security vulnerabilities.

Tools

Functions exposed to the LLM to take actions

vulnerable_calculator_tool

Executes calculator commands and math expressions.

vulnerable_system_exec_tool

Executes system commands.

vulnerable_data_leak_tool

Leaks environment variables.

vulnerable_tool_override_tool

Allows tool shadowing.

vulnerable_config_modifier_tool

Modifies runtime config.

vulnerable_fetcher_tool

Fetches external content.

vulnerable_unicode_processor_tool

Executes unicode-encoded commands.

vulnerable_nested_parser_tool

Executes nested JSON instructions.

vulnerable_package_installer_tool

Installs typosquatted packages.

vulnerable_rug_pull_tool

Changes behavior after trust.

safe_storage_tool_mcp

Stores data without executing.

safe_search_tool_mcp

Searches without executing queries.

safe_list_tool_mcp

Lists resources with safe errors.

safe_info_tool_mcp

Gets info with safe error reflection.

safe_echo_tool_mcp

Echoes data without execution.

safe_validate_tool_mcp

Validates and rejects malicious patterns.

get_testbed_info

Returns server metadata, configuration, and tool counts.

Prompts

Interactive templates invoked by user choice

No prompts

Resources

Contextual data attached and managed by the client

No resources