Tp4
High
- Category
- MCP Tool Poisoning
- Confidence
- 95% confidence
- Finding
- The documented behavior exposes a localhost HTTP service that can read and write arbitrary local files via API and can be driven through URL/query parameters. Even though it is described as local-only, local web apps are still attackable by other local processes or by malicious web pages if CORS is permissive, making arbitrary file access and server control materially risky.
