AGENTSCORE-2026-0059
MCP package: @zereight/mcp-gitlab
Published 6/4/2026 · 2.1.16 → 2.1.18
@zereight/mcp-gitlab updated from 2.1.16 to 2.1.18. Score changed 100/100 to 95/100 (-5). Risk: LOW to LOW. 1 finding.
100 → 95
Score
LOW → LOW
Risk
ALLOW
Verdict
Findings
- low command_injection: Potential command injection: shell execution with template literal input (downgraded — mitigators detected in scope: sanitizer:spawn("node", [, test_fixture:test()