@wonderwhy-er/desktop-commander
MCP server for terminal operations and file editing
Installing this server brings 569 third-party packages inside your agent's trust boundary (33 direct). This is attack surface, not a vulnerability count — it does not affect the grade above.
4 packages in this tree run a script at install time.
Findings (3)
- LOW
VULN_KNOWN— GHSA-5xx3-j724-wmx5: DesktopCommanderMCP is vulnerable to SSRF. See https://osv.dev/vulnerability/GHSA-5xx3-j724-wmx5 - LOW
VULN_KNOWN— GHSA-r87g-78mx-3wg4: DesktopCommanderMCP is vulnerable to Uncontrolled Resource Consumption. See https://osv.dev/vulnerability/GHSA-r87g-78mx-3wg4 - MED
INSTALL_SCRIPTS— @wonderwhy-er/desktop-commander runs npm install scripts (preinstall/postinstall). Install scripts execute arbitrary code at install time — a common supply-chain vector.
Embed this badge
[](https://vulnrable.com/mcp/wonderwhy-er--desktop-commander/) Automated registry-metadata scan; not a code audit. Rescanned on each site deploy.