MCPA-2026-0044
lowoverprivilegedCVSS 3.7
@dynatrace-oss/dynatrace-mcp-server create_dynatrace_notebook lacks the human-approval gate
@dynatrace-oss/dynatrace-mcp-server (npm) before 1.8.7: the create_dynatrace_notebook write tool is missing the human-approval gate applied to the other write tools, letting a caller create persistent tenant-visible notebooks with arbitrary content — including embedded DQL that other users execute when opening the notebook — without operator consent. Fixed in 1.8.7.
Affected packages
| Ecosystem | Package | Affected versions |
|---|---|---|
| npm | @dynatrace-oss/dynatrace-mcp-server | >= 0, < 1.8.7 |
Identifiers
GHSA-pc2w-4mq8-32qwCWE-862
References
- advisory https://github.com/dynatrace-oss/dynatrace-mcp/security/advisories/GHSA-pc2w-4mq8-32qw
- fix https://github.com/dynatrace-oss/dynatrace-mcp/pull/529
- web https://github.com/dynatrace-oss/dynatrace-mcp/releases/tag/v1.8.7
Timeline
- Published: 2026-07-29