dbt-mcp has 3 CVEs on record. The busiest recent month was May 2026 with 3. The median CVSS is 3.1 (low).
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 3.1
- Publish → KEV
- —
- Last 90 days
- 0 prev 3
Products
- dbt-mcp 3
3
Total CVEs
0
Critical
0
CISA KEV
0
Exploited
Worst active — by depth score
CVE-2026-44968Medium· 6.3dbt MCP Server has an Argument Injection in dbt CLI Tool Wrappers via node_selection and resource_type Parameters35CVE-2026-44970Low· 3.1dbt MCP Server Transmits All MCP Tool Arguments Including Raw SQL and --vars Credentials to dbt Labs Telemetry by Default Without Redaction17CVE-2026-44969Low· 2.5dbt MCP Server Logs Tool Arguments Including SQL Queries and Credentials in Plaintext Without Redaction When File Logging Is Enabled14
dbt-mcp vulnerabilities
CVEs affecting dbt-mcp, newest first. Open any entry for full detail, references, and exploit status.
3 CVEsRSS
CVE-2026-44968Medium· 6.3dbt MCP Server has an Argument Injection in dbt CLI Tool Wrappers via node_selection and resource_type Parameters
dbt MCP Server has an Argument Injection in dbt CLI Tool Wrappers via node_selection and resource_type Parameters
▾ Sunlitdbt-mcp · dbt-mcpEPSS 0.21%via OSV
CVE-2026-44970Low· 3.1dbt MCP Server Transmits All MCP Tool Arguments Including Raw SQL and --vars Credentials to dbt Labs Telemetry by Default Without Redaction
dbt MCP Server Transmits All MCP Tool Arguments Including Raw SQL and --vars Credentials to dbt Labs Telemetry by Default Without Redaction
▾ Sunlitdbt-mcp · dbt-mcpEPSS 0.37%via OSV
CVE-2026-44969Low· 2.5dbt MCP Server Logs Tool Arguments Including SQL Queries and Credentials in Plaintext Without Redaction When File Logging Is Enabled
dbt MCP Server Logs Tool Arguments Including SQL Queries and Credentials in Plaintext Without Redaction When File Logging Is Enabled
▾ Sunlitdbt-mcp · dbt-mcpEPSS 0.17%via OSV