Context-Inappropriate Capability
High
- Confidence
- 97% confidence
- Finding
- The client launches an external package via `npx -y @variflight-ai/variflight-mcp` at runtime, which can fetch and execute code not pinned to a reviewed version. That creates a supply-chain and arbitrary code execution risk on the host, especially because the spawned process inherits the environment and receives the API key.
