@wonderwhy-er/desktop-commander
MCP server for terminal operations and file editing
Installing this server brings 569 third-party packages inside your agent's trust boundary (33 direct). This is attack surface, not a vulnerability count — it does not affect the grade above.
4 packages in this tree run a script at install time.
Findings (3)
- LOW
VULN_KNOWN— GHSA-5xx3-j724-wmx5: DesktopCommanderMCP is vulnerable to SSRF. See https://osv.dev/vulnerability/GHSA-5xx3-j724-wmx5 - LOW
VULN_KNOWN— GHSA-r87g-78mx-3wg4: DesktopCommanderMCP is vulnerable to Uncontrolled Resource Consumption. See https://osv.dev/vulnerability/GHSA-r87g-78mx-3wg4 - MED
INSTALL_SCRIPTS— @wonderwhy-er/desktop-commander runs npm install scripts (preinstall/postinstall). Install scripts execute arbitrary code at install time — a common supply-chain vector.
Embed this badge
[](https://vulnrable.com/mcp/wonderwhy-er--desktop-commander/)
Automated registry-metadata scan; not a code audit. Findings come from npm metadata
published by the package owner and from public security advisories (OSV/GHSA) — not from our own
assessment of the code.
Grade scanned 2026-09-04 · package count resolved 2026-08-18.
A package fixed after that date will still show its earlier grade here.
Maintainer and think this is wrong or out of date? Get in touch — corrections are welcome.