Bookmark Article
Cybersecurity researchers have revealed a patched vulnerability in the figma-developer-mcp Model Context Protocol (MCP) server, identified as CVE-2025-53967, with a CVSS score of 7.5. This command injection flaw, caused by unsanitized user input, could enable attackers to execute arbitrary code on affected systems.
Want More Context? 🔎