Back to Home
rdwj icon

usda-mcp

by rdwj

Overview

A basic real-time chat application that uses WebSockets for multi-user communication.

Installation

Run Command
node server.js

Environment Variables

  • PORT

Security Notes

Critical Cross-Site Scripting (XSS) vulnerability in `client.js`. User-provided messages from the WebSocket server are directly inserted into the DOM using `innerHTML` without sanitization, allowing malicious users to execute arbitrary JavaScript in other clients' browsers. The server broadcasts messages without sanitization, enabling this client-side flaw.

Similar Servers

Stats

Interest Score0
Security Score1
Cost ClassLow
Avg Tokens50
Stars0
Forks0
Last Update2026-01-16

Tags

WebSocketChatNode.jsReal-time communication