oraios/serena
A powerful MCP toolkit for coding, providing semantic retrieval and editing capabilities - the IDE for your agent
25,077 starsPythonMITagentaivibe-codingmcp-server
SCANNED64/100
Scanned 2026-06-08 · gemini v1
Dimension breakdown
Security
15/100
7 findings
Quality
88/100
4 findings
License
89/100
1 finding
Completeness
95/100
1 finding
Findings (13)
CRITICAL: 1HIGH: 2MEDIUM: 3LOW: 4INFO: 3
- CRITICALsecurityCommand Injection via `execute_shell_command`
- HIGHsecurityInsecure Deserialization (YAML)
- HIGHsecurityPath Traversal via File Operations
- MEDIUMsecurityRegular Expression Denial of Service (ReDoS)
- MEDIUMsecurityServer-Side Template Injection (SSTI)
Detailed file:line citations + recommended fixes are visible to the maintainer of this repo after claiming the listing.
Maintainer of this repo?
Claim this listing in 30 seconds with GitHub OAuth. You'll see detailed findings, get notified about matched bounties, and can trigger re-scans on demand.
Claim listingEmbed the badge.
Drop it into your README. Every view backlinks to this verification page.
Markdown
[](https://archimedes.market/r/oraios/serena)HTML
<a href="https://archimedes.market/r/oraios/serena"><img src="https://archimedes.market/api/badge/oraios/serena.svg" alt="Archimedes Trust Verified"/></a>