RMCP 是模型上下文协议(Model Context Protocol, MCP)的官方 Rust SDK。在 2.0.0 版本之前, crate 中基于有状态 Streamable HTTP 服务器的实现(位于 )允许未认证客户端发送格式正确但并非初始化请求的 JSON-RPC POST,或携带不匹配协议头的初始化请求,导致 在验证消息之前就先调用了 。若早期验证失败,函数会在移除已插入的 之前直接返回,从而导致该会话及其通道状态在服务器进程整个生命周期内被永久保留。反复发送此类请求会导致共享会话表无限增长,因
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| modelcontextprotocol | rust-sdk | < 2.0.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet