The Damn Vulnerable MCP Server is an educational project that implements the Model Context Protocol with intentional security vulnerabilities to demonstrate potential attack vectors and weaknesses. It provides ten escalating challenges covering vulnerabilities such as prompt injection, tool poisoning, excessive permissions, token theft, malicious code execution, and remote access control. The server helps security researchers, developers, and AI safety professionals understand and learn how to identify and mitigate security issues in MCP implementations.
claude mcp add --transport stdio harishsg993010-damn-vulnerable-mcp-server uvx damn-vulnerable-mcp-server