vuln-mcp-serverPenetration TestingTesting & QA ToolspruthurautFlicense-qualityCmaintenanceA vulnerable-by-design MCP server pair (NotesServer and VaultServer) for testing MCP security tools, featuring confused-deputy, prompt injection, and authorization bypass scenarios. Last updated 2026-06-20