CVE-2026-25536 | modelcontextprotocol typescript-sdk up to 1.25.x race condition (ID 204 / EUVD-2026-5335)
A vulnerability, which was classified as critical, was found in modelcontextprotocol typescript-sdk up to 1.25.x. Affected by this issue is some unknown functionality. Such manipulation leads to race condition.
This vulnerability is traded as CVE-2026-25536. The attack may be launched remotely. There is no exploit available.
You should upgrade the affected component.