Security: ChromeDevTools/chrome-devtools-mcp
Security Advisories
View known security vulnerabilities and report new vulnerabilities privately to maintainers.
-
daemon.pid write follows symlinks in /tmp fallback runtime directoryGHSA-3pvj-jv98-qhjq published
Jun 15, 2026 by OrKoNModerate -
validatePath() does not canonicalize symlinks before enforcing rootsGHSA-8qf9-62x2-82pp published
Jun 16, 2026 by OrKoNModerate